Security Advisory

CVE-2026-9638

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-06-12 14:41:51
Last updated 2026-06-12 17:50:43
Assigner CPANSec
CVSS score not scored
State PUBLISHED

Description

Crypt::PBKDF2 versions before 0.261630 for Perl generate insecure random values for salts. These versions use the built-in rand function, which is predictable and unsuitable for cryptography.