Timing Side-Channel Vulnerability in @perfood/couch-auth by Perfood
CVE-2025-70949
7.5HIGH
What is CVE-2025-70949?
A timing side-channel vulnerability exists in @perfood/couch-auth version 0.26.0, where an observable timing discrepancy may allow attackers to infer sensitive information by exploiting the timing behavior of the application. This could lead to unauthorized access and the potential leakage of confidential data, making it crucial for users to secure their implementations and update to safe versions.
