CVE-2025-40905

Publication date

2026-02-12 23:39:28

Family

CPANSec

State

PUBLISHED

Description

WWW::OAuth 1.000 and earlier for Perl uses the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions.