Cyber Resilience

CWE · MITRE source

CWE-334Small Space of Random Values

Abstraction: Base · CVEs in our corpus: 14

The number of possible random values is smaller than needed by the product, making it more susceptible to brute force attacks.

Last updated: 21 August 2026 14:15 UTC

OWASP Top 10 for Web (2025)

This weakness contributes to A04:2025 Cryptographic Failures.

Control responseHuman-reviewed

Answering this weakness across the control lifecycle, from our framework cross-walks.

Prevent
Stop it (NIST 800-53 / CSF Protect)
  • PR.PS-06
  • SC-12 Cryptographic Key Establishment and Management
  • IA-5 Authenticator Management
  • PR.AA-03
Detect
Catch it (CSF Detect / Respond)

Harden
Shrink the surface (DISA STIG)

Validate
Prove the fix (OWASP ASVS)

NIST 800-53 r5 controls that address this weakness (0)AI-assisted

Control Title Family Why it addresses this CWE
No NIST controls proposed yet.

Top CVEs of this weakness type, ranked by Risk Priority

CVE Risk CVSS EPSS Published
CVE-2023-39979 7.49.80.00742023-09-02
CVE-2024-6890 6.78.80.00722024-08-07
CVE-2022-24402 6.68.80.00612023-10-19
CVE-2026-718516.29.00.00322026-08-07
CVE-2022-22517 6.17.50.01302022-04-07
CVE-2021-21955 6.07.50.00982021-12-09
CVE-2020-7566 5.57.30.00302020-11-19
CVE-2023-6951 4.86.60.00292024-04-02
CVE-2022-33707 4.65.30.00782022-07-12
CVE-2022-20941 4.65.30.00682022-11-15
CVE-2024-52616 4.65.30.00682024-11-21
CVE-2024-54017 4.45.30.00312026-05-12
CVE-2024-51720 3.94.80.00322024-11-12