Property
Languageapex
Severitymedium
CWECWE-321: Use of Hard-coded Cryptographic Key
OWASPA02:2021 - Cryptographic Failures
Confidence LevelLow
Impact LevelHigh
Likelihood LevelLow

Description#

The rule makes sure you are using randomly generated IVs and keys for Crypto calls. Hard-coding these values greatly compromises the security of encrypted data.