VYPR

rpm package

almalinux/rest-devel

pkg:rpm/almalinux/rest-devel

Vulnerabilities (1)

  • CVE-2026-16615MedJul 22, 2026
    affected < 0.9.1-11.el10_2.1fixed 0.9.1-11.el10_2.1

    A flaw was found in librest. The PKCE implementation for OAuth authorization uses the GRand function from the GLib API, a cryptographically insecure pseudo-random number generator. Because the generated "code verifier" lacks sufficient cryptographic entropy, a malicious actor can