
Predictable session IDs in Perl HTTP::Session enable hijacking
CVE-2026-3256 reports `HTTP::Session` through 0.53 defaults to predictable session ID generation, risking session hijack in Perl web apps that rely on defaults.
NewsWeb SecurityPerl
1 minYesterday
