From 81c090cdfd9a168b1b8a50bd10637bd6d2d9366a Mon Sep 17 00:00:00 2001 From: Ed Minnix Date: Tue, 11 Jul 2023 21:42:29 -0400 Subject: [PATCH] Add missing security metadata --- java/ql/src/Security/CWE/CWE-330/WeakRandomness.ql | 1 + 1 file changed, 1 insertion(+) diff --git a/java/ql/src/Security/CWE/CWE-330/WeakRandomness.ql b/java/ql/src/Security/CWE/CWE-330/WeakRandomness.ql index b020d6148cbcd..c0d3005539bb9 100644 --- a/java/ql/src/Security/CWE/CWE-330/WeakRandomness.ql +++ b/java/ql/src/Security/CWE/CWE-330/WeakRandomness.ql @@ -3,6 +3,7 @@ * @description Using a weak source of randomness may allow an attacker to predict the generated values. * @kind path-problem * @problem.severity error + * @security-severity 8.6 * @precision high * @id java/weak-randomness * @tags security