Filtered by vendor Biafra Subscriptions
Filtered by product Dancer2::plugin::auth::oauth Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2026-11832 1 Biafra 1 Dancer2::plugin::auth::oauth 2026-06-24 9.1 Critical
Dancer2::Plugin::Auth::OAuth versions before 0.22 for Perl default to a predictable nonce. The default nonce was generated using an MD5 hash of the epoch time, which is predictable.