Skip to content

Security Vulnerabilities Related to Use of insufficiently random values in SDK #447

@Sathish03-MS

Description

@Sathish03-MS

I am writing to bring to your attention some security vulnerabilities identified in your SDK that affect our application during compliance checks, specifically regarding the usage of Use of insufficiently random values in the following locations

File Path: androidx\activity\result\ActivityResultRegistry.java
Line 31. private Random mRandom = new Random();

Please review the identified occurrences and provide an update or patch addressing these vulnerabilities.
If possible, let us know the estimated timeline for the fix, as this issue directly impacts our app’s compliance with the Google Play Store’s policies.
We appreciate your work on this SDK and look forward to your response.

Thank you for your attention to this matter.

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions