CVE-2026-11625
Bytes::Random::Secure versions through 0.29 for Perl share internal state across forked processes
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Bytes::Random::Secure versions through 0.29 for Perl share internal state across forked processes. When an object is initialised before forking, or when the functional interface is used, then the internal state for the PRNG is shared across processes and identical random streams will be produced. Secrets generated in multiprocess applications are predictable across processes.
| CWE | CWE-335 |
| Vendor | davido |
| Product | bytes::random::secure |
| Published | Jun 26, 2026 |
Stay Ahead of the Next One
Get instant alerts for davido bytes::random::secure
Be the first to know when new unknown vulnerabilities affecting davido bytes::random::secure are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
DAVIDO / Bytes::Random::Secure
0 โค 0.29
References
github.com: https://github.com/daoswald/Bytes-Random-Secure/issues/3 github.com: https://github.com/daoswald/Bytes-Random-Secure/pull/4 security.metacpan.org: https://security.metacpan.org/patches/B/Bytes-Random-Secure/0.29/CVE-2026-11625-r1.patch cve.org: https://www.cve.org/CVERecord?id=CVE-2026-41564