CWE-337 - Predictable Seed in Pseudo-Random Number Generator (PRNG)

Description

A Pseudo-Random Number Generator (PRNG) is initialized from a predictable seed, such as the process ID or system time.






Latest vulnerabilities for CWE-337

Multiple vulnerabilities in IBM Netezza Appliance 2025-12-17
Medium Yes Public exploit
Multiple vulnerabilities in IBM i 2025-11-11
Medium Yes Public exploit
Multiple vulnerabilities in ISC BIND 2025-10-23
Medium Yes Public exploit
Multiple vulnerabilities in IBM API Connect 2025-06-11
Critical Yes Public exploit
DNS spoofing attack in Avahi 2024-12-11
Medium No

References

Description of CWE-337 on Mitre website