PT-2026-5730 · Unknown · Polarlearn
Jvr2022
·
Published
2026-02-02
·
Updated
2026-02-02
·
CVE-2026-25222
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
PolarLearn versions 0-PRERELEASE-15 and earlier
Description
A timing attack in the sign-in process allows unauthenticated attackers to determine if a specific email address is registered on the platform. The vulnerability occurs because the server performs Argon2 password hashing only if the user exists in the database. Requests for existing users take approximately 650ms, while requests for non-existent users take approximately 160ms. By measuring the response time of the login endpoint, an attacker can distinguish between valid and invalid email addresses. The vulnerable API endpoint is the login endpoint. The
email address is the vulnerable parameter.Recommendations
Apply a fix to ensure consistent response times for both valid and invalid email addresses during the sign-in process.
Exploit
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Polarlearn