HomeDefault status
unaffected
0.01 (custom) before 0.17
affected
Description
Plack-Middleware-Session versions before 0.17 may be vulnerable to HMAC comparison timing attacks
Problem types
CWE-1254 Incorrect Comparison Logic Granularity
Product status
0.01 (custom) before 0.17
References
github.com/...ommit/b7f0252269ba1bb812b5dc02303754fe94c808e4