Fractal has a modest vulnerability footprint concentrated around a narrowly scoped set of products, with observed weaknesses centered on information-disclosure issues such as observable discrepancies and timing-based side channels. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Fractal over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-13939HIGH String::Compare::ConstantTime for Perl through 0.321 is vulnerable to timing attacks that allow an attacker to guess the length of a secret string.
As stated in the documentation: | Mar 28, 2025 | 7.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Fractal.
Media articles that mention a CVE ID that affects a product developed by Fractal — matched by CVE ID, not by vendor name.