Unrated severityNVD Advisory· Published Jun 26, 2026· Updated Jul 1, 2026
Bytes::Random::Secure::Tiny versions through 1.011 for Perl share internal state across forked processes
CVE-2026-11702
Description
Bytes::Random::Secure::Tiny versions through 1.011 for Perl share internal state across forked processes.
When an object is initialised before forking, then the internal state for the PRNG is shared across processes and identical random streams will be produced.
Secrets generated in multiprocess applications are predictable across processes.
Affected products
1- Range: <=1.011
Patches
Vulnerability mechanics
References
5- security.metacpan.org/patches/B/Bytes-Random-Secure-Tiny/1.011/CVE-2026-11702-r1.patchmitrepatch
- github.com/daoswald/Bytes-Random-Secure-Tiny/issues/6mitreissue-tracking
- github.com/daoswald/Bytes-Random-Secure-Tiny/pull/7mitreissue-tracking
- www.cve.org/CVERecordmitrerelated
- www.cve.org/CVERecordmitrerelated
News mentions
0No linked articles in our index yet.