CVE-2026-41588
RELATE is a web-based courseware package. Prior to commit 2f68e16, there is a timing attack vulnerability in course/auth
RELATE is a web-based courseware package. Prior to commit 2f68e16, there is a timing attack vulnerability in course/auth.py, check_sign_in_key(). This issue has been patched via commit 2f68e16.
CRITICAL · CVSS 9
EPSS 0.00018
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0