CVE-2026-11832

ANALYSIS PENDING

Dancer2::Plugin::Auth::OAuth versions before 0.22 for Perl default to a predictable nonce

Title source: cna
STIX 2.1

Description

Dancer2::Plugin::Auth::OAuth versions before 0.22 for Perl default to a predictable nonce. The default nonce was generated using an MD5 hash of the epoch time, which is predictable.

Details

CWE
CWE-338
Status published
Products (1)
BIAFRA/Dancer2::Plugin::Auth::OAuth < 0.22
Published Jun 15, 2026
Tracked Since Jun 16, 2026