๐Ÿ” CVE Alert

CVE-2026-47373

UNKNOWN 0.0

Crypt::SaltedHash versions through 0.09 for Perl is susceptible to timing attacks

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Crypt::SaltedHash versions through 0.09 for Perl is susceptible to timing attacks. These versions use Perl's built-in eq comparison. Discrepencies in timing could be used to guess the underlying hash.

CWE CWE-208
Vendor rrwo
Product crypt::saltedhash
Published May 20, 2026
Last Updated May 20, 2026
Stay Ahead of the Next One

Get instant alerts for rrwo crypt::saltedhash

Be the first to know when new unknown vulnerabilities affecting rrwo crypt::saltedhash are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

RRWO / Crypt::SaltedHash
0 โ‰ค 0.09

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
metacpan.org: https://metacpan.org/release/RRWO/Crypt-SaltedHash-0.10/changes github.com: https://github.com/robrwo/perl-Crypt-SaltedHash/commit/c07bfc5c23185b0667233d0f2e1252d81f1f027a.patch openwall.com: http://www.openwall.com/lists/oss-security/2026/05/20/21