CVE-2026-73567 | JuneAndGreen sm-crypto up to 0.4.x SM2 src/sm2/utils.js sm2.generateKeyPairHex random values

SecurityVulns

A vulnerability classified as problematic was found in JuneAndGreen sm-crypto up to 0.4.x. This affects the function sm2.generateKeyPairHex of the file src/sm2/utils.js of the component SM2. Such manipulation leads to insufficiently random values.

This vulnerability is uniquely identified as CVE-2026-73567. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is advised.VulDB Recent EntriesRead More