In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade simple-otp
to version 0.1.1 or higher.
simple-otp is an A simple OTP Generation and Verification Library which works without a Database or Cache
Affected versions of this package are vulnerable to Timing Attack due to using ==
operator when comparing hashes.