CVE-2026-46473 – Authen::TOTP versions before 0.1.1 for Perl generate secrets using rand

CVE ID :CVE-2026-46473

Published : May 21, 2026, 7:16 p.m. | 1 hour, 43 minutes ago

Description :Authen::TOTP versions before 0.1.1 for Perl generate secrets using rand.

Secrets were generated using Perl’s built-in rand function, which is predictable and unsuitable for security usage.

Severity: 7.5 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه