VYPR

librest

by Debian

CVEs (1)

  • CVE-2026-16615Jul 24, 2026
    risk 0.00cvss epss

    A flaw was found in librest. The PKCE implementation for OAuth authorization uses the GRand function from the GLib API, a cryptographically insecure pseudo-random number generator. Because the generated "code verifier" lacks sufficient cryptographic entropy, a malicious actor…