threat
engine
.sh
Back
·
··:··
Home
/
Product
/
timlegge crypt\
Product
timlegge crypt\
10 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2026-8463
>= 0.017 and < 0.031
Crypt::Argon2 versions from 0.017 before 0.031 for Perl perform a heap out-of-bounds read in argon2_verify on empty encoded input.
5.3
MEDIUM
CVE-2026-5086
< 0.019
Crypt::SecretBuffer versions before 0.019 for Perl is suseceptible to timing attacks. For example, if Crypt::SecretBuffer was use
7.5
HIGH
CVE-2026-30910
<= 0.001001
Crypt::Sodium::XS versions through 0.001000 for Perl has potential integer overflows. Combined aead encryption, combined signatur
7.5
HIGH
CVE-2026-30909
< 2.003
Crypt::NaCl::Sodium versions through 2.002 for Perl has potential integer overflows. bin2hex, encrypt, aes256gcm_encrypt_afternm
9.8
CRITICAL
CVE-2026-2597
< 0.010
Crypt::SysRandom::XS versions before 0.010 for Perl is vulnerable to a heap buffer overflow in the XS function random_bytes(). Th
7.5
HIGH
CVE-2026-2588
<= 2.001
Crypt::NaCl::Sodium versions through 2.001 for Perl has an integer overflow flaw on 32-bit systems. Sodium.xs casts a STRLEN (siz
9.1
CRITICAL
CVE-2026-2474
>= 0.41 and < 0.55
Crypt::URandom versions from 0.41 before 0.55 for Perl is vulnerable to a heap buffer overflow in the XS function crypt_urandom_ge
7.5
HIGH
CVE-2025-15444
< 0.000042
Crypt::Sodium::XS module versions prior to 0.000042, for Perl, include a vulnerable version of libsodium <= 1.0.20 or
9.8
CRITICAL
CVE-2024-58040
all versions
Crypt::RandomEncryption for Perl version 0.01 uses insecure rand() function during encryption.
9.1
CRITICAL
CVE-2025-1828
>= 1.05 and <= 1.55
Crypt::Random Perl package 1.05 through 1.55 may use rand() function, which is not cryptographically strong, for cryptographic
8.8
HIGH
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin