Browse all 14 CVE security advisories affecting TIMLEGGE. AI-powered Chinese analysis, POCs, and references for each vulnerability.
TIMLEGGE develops enterprise software solutions for supply chain management, with a core focus on logistics optimization and inventory tracking. Historically, the organization's products have been susceptible to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from insufficient input validation and access control flaws. While no major public security incidents have been documented, TIMLEGGE's four recorded CVEs highlight persistent weaknesses in authentication mechanisms and secure coding practices. The organization's security posture appears reactive rather than proactive, with vulnerabilities typically addressed only after public disclosure, leaving customers exposed to potential exploitation between discovery and patch deployment.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-14570 | Crypt::DSA versions before 1.22 for Perl draw the DSA signing nonce and private key from a biased random generator, leading to private-key recovery — Crypt::DSA CWE-330 | - | - | 2026-07-05 |
| CVE-2026-12205 | Crypt::DSA versions before 1.21 for Perl reused the nonce across signatures, leading to private-key recovery — Crypt::DSA CWE-323 | - | - | 2026-06-15 |
| CVE-2026-8704 | Crypt::DSA versions through 1.19 for Perl use 2-args open, allowing existing files to be modified — Crypt::DSA CWE-552 | - | - | 2026-05-15 |
| CVE-2026-8700 | Crypt::DSA versions before 1.20 for Perl generate seeds using rand — Crypt::DSA CWE-331 | - | - | 2026-05-15 |
This page lists every published CVE security advisory associated with TIMLEGGE. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.