Inadequate Encryption Strength Affecting org.ninjaframework:ninja-core package, versions [0,]
Threat Intelligence
Exploit Maturity
Proof of concept
Do your applications use this vulnerable package?
In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applications- Snyk ID SNYK-JAVA-ORGNINJAFRAMEWORK-7218892
- published 7 Jun 2024
- disclosed 6 Jun 2024
- credit JAckLosingHeart
Introduced: 6 Jun 2024
CVE-2024-36823 Open this link in a new tabHow to fix?
There is no fixed version for org.ninjaframework:ninja-core
.
Overview
Affected versions of this package are vulnerable to Inadequate Encryption Strength via the encrypt
function. An attacker can obtain sensitive information by exploiting the weak cryptographic algorithm used.
References
CVSS Scores
version 3.1