← Back to browse · API

CVE-2025-15638

Severity
CRITICAL
CVSS
10.0
EPSS
0.0057
Risk score
40.2
CISA KEV
No
PoC
No
Published
2026-04-21
Modified
2026-04-21
First seen
2026-08-07
Aliases
EUVD-2025-209545, GHSA-FWPH-XHJ4-V8R5
Products
ATRODO:Net::Dropbear 0 <0.14
Sources
euvd EUVD-2025-209545

Description

Net::Dropbear versions before 0.14 for Perl contains a vulnerable version of libtomcrypt. Net::Dropbear versions before 0.14 includes versions of Dropbear 2019.78 or earlier. These include versions of libtomcrypt v1.18.1 or earlier, which is affected by CVE-2016-6129 and CVE-2018-12437.

References