Blockchain security firm Coinspect has identified a critical vulnerability in the popular JavaScript cryptography library CryptoJS, specifically in the CryptoJS.lib.WordArray.random() function, which…
A critical vulnerability in CryptoJS's random number generator reduces entropy for security-sensitive values, enabling brute-force attacks. Affects all versions below 4.0.0.