VYPR

crates.io package

totp-rs

pkg:cargo/totp-rs

Vulnerabilities (1)

  • CVE-2022-29185May 20, 2022
    affected < 1.1.0fixed 1.1.0

    totp-rs is a Rust library that permits the creation of 2FA authentification tokens per time-based one-time password (TOTP). Prior to version 1.1.0, token comparison was not constant time, and could theorically be used to guess value of an TOTP token, and thus reuse it in the same