Security Advisories์ถ์ฒ: GitHub Security Advisories์กฐํ์ 2
[@perfood/couch-auth] @perfood/couch-auth has an Observable Timing Discrepancy
By GitHub2026๋
3์ 6์ผ
**[@perfood/couch-auth] @perfood/couch-auth has an Observable Timing Discrepancy **
An Observable Timing Discrepancy in @perfood/couch-auth v0.26.0 allows attackers to access sensitive information via a timing side-channel. References https://nvd.nist.gov/vuln/detail/CVE-2025-70949 https://gist.github.com/0xHunterr/38aab644874ca9f4646524c5b01cfe5e https://github.com/perfood/couch-auth https://www.npmjs.com/package/@perfood/couch-auth https://github.com/advisories/GHSA-mjqr-5c55-g77h
---
**[devsupporter ํด์ค]**
์ด ๊ธฐ์ฌ๋ GitHub Security Advisories์์ ์ ๊ณตํ๋ ์ต์ ๊ฐ๋ฐ ๋ํฅ์ ๋๋ค. ๊ด๋ จ ๋๊ตฌ๋ ๊ธฐ์ ์ ๋ํด ๋ ์์๋ณด์๋ ค๋ฉด ์๋ณธ ๋งํฌ๋ฅผ ์ฐธ๊ณ ํ์ธ์.
An Observable Timing Discrepancy in @perfood/couch-auth v0.26.0 allows attackers to access sensitive information via a timing side-channel. References https://nvd.nist.gov/vuln/detail/CVE-2025-70949 https://gist.github.com/0xHunterr/38aab644874ca9f4646524c5b01cfe5e https://github.com/perfood/couch-auth https://www.npmjs.com/package/@perfood/couch-auth https://github.com/advisories/GHSA-mjqr-5c55-g77h
---
**[devsupporter ํด์ค]**
์ด ๊ธฐ์ฌ๋ GitHub Security Advisories์์ ์ ๊ณตํ๋ ์ต์ ๊ฐ๋ฐ ๋ํฅ์ ๋๋ค. ๊ด๋ จ ๋๊ตฌ๋ ๊ธฐ์ ์ ๋ํด ๋ ์์๋ณด์๋ ค๋ฉด ์๋ณธ ๋งํฌ๋ฅผ ์ฐธ๊ณ ํ์ธ์.
![[@perfood/couch-auth] @perfood/couch-auth has an Observable Timing Discrepancy](/assets/images/github_com_1773014671626.png)