openam-jp / openam

Other
32 stars 15 forks source link

Insufficient Entropy #278

Closed tsujiguchitky closed 1 year ago

tsujiguchitky commented 1 year ago

Description

There is a problem of entropy reduction due to lack of case checking for user_code.

This may be the same vulnerability announced as AM Security Advisory #202204-09 Security Misconfiguration.