CVE Database
/

CVE-2025-15578

Back to search

CVE-2025-15578

Published: Feb 16, 2026

Modified: Feb 17, 2026

PUBLISHED

Description

Maypole versions from 2.10 through 2.13 for Perl generates session ids insecurely. The session id is seeded with the system time (which is available from HTTP response headers), a call to the built-in rand() function, and the PID.

VendorProductVersions

TEEJAY

Maypole

affected
2.10 - <= 2.13

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now