VYPR

Dancer2::Plugin::Auth::OAuth

by BIAFRA

CVEs (1)

  • CVE-2026-11832CriJun 15, 2026
    risk 0.59cvss 9.1epss

    Dancer2::Plugin::Auth::OAuth versions before 0.22 for Perl default to a predictable nonce. The default nonce was generated using an MD5 hash of the epoch time, which is predictable.