CVE-2023-36993: Travianz Project Travianz
Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.
The cryptographically insecure random number generator being used in TravianZ 8.3.4 and 8.3.3 in the password reset function allows an attacker to guess the password reset.parameters and to take over accounts.
Affected products
- Travianz Project Travianz: version 8.3.3 only; version 8.3.4 only
Published 2023-07-07. Last modified 2026-06-17.