Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-15747

около 1 месяца назад

Mojolicious versions from 4.59 before 9.48 for Perl expose a stable representation of the session CSRF token to a BREACH compression oracle. _csrf_token generates and caches one token per session and returns the same value on every call, and _csrf_field places that value in a hidden `csrf_token` input. When a response carrying the token also echoes attacker-controlled input and is gzip-compressed, the chosen values and the resulting compressed lengths form a BREACH oracle. An attacker able to query it can recover the token and pass csrf_protect validation.

CVSS3: 9.1
EPSS: Низкий
nvd логотип

CVE-2026-15747

около 1 месяца назад

Mojolicious versions from 4.59 before 9.48 for Perl expose a stable representation of the session CSRF token to a BREACH compression oracle. _csrf_token generates and caches one token per session and returns the same value on every call, and _csrf_field places that value in a hidden `csrf_token` input. When a response carrying the token also echoes attacker-controlled input and is gzip-compressed, the chosen values and the resulting compressed lengths form a BREACH oracle. An attacker able to query it can recover the token and pass csrf_protect validation.

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2026-15747

около 1 месяца назад

Mojolicious versions from 4.59 before 9.48 for Perl expose a stable re ...

CVSS3: 9.1
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21496-1

25 дней назад

Security update for perl-Mojolicious

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:21451-1

27 дней назад

Security update for perl-Mojolicious

EPSS: Низкий
github логотип

GHSA-6cg9-7rr8-cvj2

около 1 месяца назад

Mojolicious versions from 4.59 before 9.48 for Perl expose a stable representation of the session CSRF token to a BREACH compression oracle. _csrf_token generates and caches one token per session and returns the same value on every call, and _csrf_field places that value in a hidden `csrf_token` input. When a response carrying the token also echoes attacker-controlled input and is gzip-compressed, the chosen values and the resulting compressed lengths form a BREACH oracle. An attacker able to query it can recover the token and pass csrf_protect validation.

CVSS3: 9.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-15747

Mojolicious versions from 4.59 before 9.48 for Perl expose a stable representation of the session CSRF token to a BREACH compression oracle. _csrf_token generates and caches one token per session and returns the same value on every call, and _csrf_field places that value in a hidden `csrf_token` input. When a response carrying the token also echoes attacker-controlled input and is gzip-compressed, the chosen values and the resulting compressed lengths form a BREACH oracle. An attacker able to query it can recover the token and pass csrf_protect validation.

CVSS3: 9.1
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2026-15747

Mojolicious versions from 4.59 before 9.48 for Perl expose a stable representation of the session CSRF token to a BREACH compression oracle. _csrf_token generates and caches one token per session and returns the same value on every call, and _csrf_field places that value in a hidden `csrf_token` input. When a response carrying the token also echoes attacker-controlled input and is gzip-compressed, the chosen values and the resulting compressed lengths form a BREACH oracle. An attacker able to query it can recover the token and pass csrf_protect validation.

CVSS3: 9.1
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2026-15747

Mojolicious versions from 4.59 before 9.48 for Perl expose a stable re ...

CVSS3: 9.1
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:21496-1

Security update for perl-Mojolicious

0%
Низкий
25 дней назад
suse-cvrf логотип
openSUSE-SU-2026:21451-1

Security update for perl-Mojolicious

0%
Низкий
27 дней назад
github логотип
GHSA-6cg9-7rr8-cvj2

Mojolicious versions from 4.59 before 9.48 for Perl expose a stable representation of the session CSRF token to a BREACH compression oracle. _csrf_token generates and caches one token per session and returns the same value on every call, and _csrf_field places that value in a hidden `csrf_token` input. When a response carrying the token also echoes attacker-controlled input and is gzip-compressed, the chosen values and the resulting compressed lengths form a BREACH oracle. An attacker able to query it can recover the token and pass csrf_protect validation.

CVSS3: 9.1
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу