Insecure encryption algorithm In bcrypt
Description
Integer Overflow or Wraparound and Use of a Broken or Risky Cryptographic Algorithm in bcrypt In bcrypt (npm package) before version 5.0.0, data is truncated wrong when its length is greater than 255 bytes.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
npm | 5.0.0 |
Aliases
1. 2. 3. 4.
References
1. 2. 3.