Data::Entropy for Perl 0.007 and earlier use the rand()...
High severity
Unreviewed
Published
Mar 28, 2025
to the GitHub Advisory Database
•
Updated Sep 5, 2025
Description
Published by the National Vulnerability Database
Mar 28, 2025
Published to the GitHub Advisory Database
Mar 28, 2025
Last updated
Sep 5, 2025
Data::Entropy for Perl 0.007 and earlier use the rand() function as the default source of entropy, which is not cryptographically secure, for cryptographic functions.
References