Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 12 May 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-203 | |
| CPEs | cpe:2.3:a:inducer:relate:*:*:*:*:*:*:*:* |
Sat, 09 May 2026 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 08 May 2026 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Inducer
Inducer relate |
|
| Vendors & Products |
Inducer
Inducer relate |
Fri, 08 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | RELATE is a web-based courseware package. Prior to commit 2f68e16, there is a timing attack vulnerability in course/auth.py — check_sign_in_key(). This issue has been patched via commit 2f68e16. | |
| Title | RELATE: Timing Attack Vulnerability in course/auth.py — check_sign_in_key() | |
| Weaknesses | CWE-208 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-05-08T23:27:23.515Z
Reserved: 2026-04-21T14:15:21.959Z
Link: CVE-2026-41588
Updated: 2026-05-08T23:27:10.413Z
Status : Analyzed
Published: 2026-05-08T15:16:43.363
Modified: 2026-05-12T21:09:52.837
Link: CVE-2026-41588
No data.
OpenCVE Enrichment
Updated: 2026-05-12T23:45:25Z