CVE-2009-10007

Catalyst::Plugin::Authentication versions before 0.10_027 for Perl is susceptible to session fixation attacks. Catalyst::Plugin::Authentication does not automatically change the session id after authentication. An attacker that obtains a session id cookie can use this to impersonate the victim.
Configurations

No configuration.

History

No history.

Information

Published : 2026-06-09 09:16

Updated : 2026-07-21 07:10


NVD link : CVE-2009-10007

Mitre link : CVE-2009-10007

CVE.ORG link : CVE-2009-10007


JSON object : View

Products Affected

No product.

CWE
CWE-384

Session Fixation