CVE-2025-22376 – Apache Net::OAuth Client Nonce Generation Vulnerability

CVE ID : CVE-2025-22376

Published : Jan. 3, 2025, 10:15 p.m. | 1 hour, 1 minute ago

Description : In Net::OAuth::Client in the Net::OAuth package before 0.29 for Perl, the default nonce is a 32-bit integer generated from the built-in rand() function, which is not cryptographically strong.

Severity: 0.0 | NA

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE-2025-22376 – Apache Net::OAuth Client Nonce Generation Vulnerability