CVE-2026-13577 | Dancer2 up to 2.1.0 Session Factory SessionFactory.pm generate_id random values

SecurityVulns

A vulnerability identified as problematic has been detected in Dancer2 up to 2.1.0. Affected by this issue is the function generate_id of the file lib/Dancer2/Core/Role/SessionFactory.pm of the component Session Factory. This manipulation causes insufficiently random values.

This vulnerability is tracked as CVE-2026-13577. The attack is possible to be carried out remotely. No exploit exists.VulDB Recent EntriesRead More