VDB
GCVE-110-MAGEIA-2026-365
GCVE-110-MAGEIA-2026-365
Advisory Published
Net::OAuth::Client versions before 0.32 for Perl allow the service
provider to silently downgrade OAuth 1.0a to OAuth 1.0 in
get_request_token
Net::OAuth versions before 0.32 for Perl allow memory exhaustion via
unbounded caching of failed module loads in smart_require
Net::OAuth versions before 0.33 for Perl allow the sender to choose the
signature algorithm in verify
Net::OAuth versions before 0.33 for Perl check HMAC-SHA1, HMAC-SHA256
and PLAINTEXT signatures with a non-constant-time comparison in verify
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | perl-Net-OAuth | 0 (affected), 0.330.0-1.mga9 (unaffected) | — |
| Mageia | perl-Net-OAuth | 0 (affected), 0.330.0-1.mga10 (unaffected) | — |
References
Browse GCVE Records
1,469 records in the GCVE database · Updated September 3, 2026
No matching records found.
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.