A vulnerability, which was classified as problematic, was found in GUIMARD Apache::Session::Generate::SHA256 up to 1.3.18 on Perl. This issue affects the function rand. The manipulation results in generation of predictable numbers or identifiers.

This vulnerability is known as CVE-2026-8503. It is possible to launch the attack remotely. No exploit is available.

You should upgrade the affected component.