CVE-2026-45180

Catalyst::Plugin::Statsd versions through 0.10.0 for Perl may leak session ids. If the communication channel to the statsd daemon is not secured (for example, by sending UDP packets to a host on another network), then users' session ids may be leaked. This may allow an attacker to use session ids as authentication tokens.
Configurations

No configuration.

History

12 May 2026, 15:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

10 May 2026, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-10 21:16

Updated : 2026-05-12 16:48


NVD link : CVE-2026-45180

Mitre link : CVE-2026-45180

CVE.ORG link : CVE-2026-45180


JSON object : View

Products Affected

No product.

CWE
CWE-319

Cleartext Transmission of Sensitive Information