A vulnerability identified as problematic has been detected in Dancer2 up to 2.1.0. Affected by this issue is the function
generate_id of the file lib/Dancer2/Core/Role/SessionFactory.pm of the component Session Factory. This manipulation causes insufficiently random values.
This vulnerability is tracked as CVE-2026-13577. The attack is possible to be carried out remotely. No exploit exists.