CVE-2023-36993: Travianz Project Travianz

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

The cryptographically insecure random number generator being used in TravianZ 8.3.4 and 8.3.3 in the password reset function allows an attacker to guess the password reset.parameters and to take over accounts.

Affected products

Published 2023-07-07. Last modified 2026-06-17.