crypto-js PBKDF2 1,000 times weaker than specified in 1993 and 1.3M times weaker than current standard
I have a question regarding this vulnerability. I’d like to know what this actually means. Is it just some fantasy of GitHub Dependabot, or it is really something dangerous?
crypto js 4.1.1 vulnerability ( crypto-js PBKDF2 1,000 times weaker than specified in 1993 and 1.3M times weaker than current standard )
I have a question regarding this vulnerability. I’d like to know what this actually means.. Is it just some fantasy of a github dependabot, or maybe it is really sth dangerous in the real life.
here’s some overview about the issue