CVE-2026-5091
Catalyst::Plugin::Authentication versions through 0.10024 for Perl is susceptible to timing attacks
CVSS Score
5.1
EPSS Score
0.0%
EPSS Percentile
2th
Catalyst::Plugin::Authentication versions through 0.10024 for Perl is susceptible to timing attacks. These versions use Perl's built-in eq comparison. Discrepencies in timing could be used to guess the underlying hash or password.
| CWE | CWE-208 |
| Vendor | jjnapiork |
| Product | catalyst::plugin::authentication |
| Published | May 21, 2026 |
| Last Updated | May 22, 2026 |
Stay Ahead of the Next One
Get instant alerts for jjnapiork catalyst::plugin::authentication
Be the first to know when new medium vulnerabilities affecting jjnapiork catalyst::plugin::authentication are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
JJNAPIORK / Catalyst::Plugin::Authentication
0 โค 0.10024