{"id":"CVE-2026-54736","aliases":["GHSA-8jqh-95g6-7jpj"],"url":"https://o3.security/vulnerability/CVE-2026-54736","summary":"Phalcon: Non-constant-time HMAC verification in `Encryption\\Crypt::decrypt` (timing side-channel)","details":"Phalcon is a high-performance, full-stack PHP framework. Prior to 5.14.1, Phalcon\\Encryption\\Crypt::decrypt compares the attacker-supplied HMAC tag against the freshly computed HMAC using PHP/Zephir identity comparison, which lowers to a byte-wise comparison that returns early on the first differing byte. This observable timing discrepancy can allow an attacker to recover a valid tag byte-by-byte and attach it to a chosen IV and ciphertext so that decrypt() accepts tampered encrypted content as authentic. This issue is fixed in version 5.14.1.","published":"2026-07-10T21:02:53.873Z","modified":"2026-08-12T03:51:13.817311910Z","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[],"fix":{"url":"https://github.com/phalcon/cphalcon/commit/ad53ab1b2e7ec59b3af92b0b37b8aaa099011137","label":"phalcon/cphalcon@ad53ab1"},"references":[{"type":"WEB","url":"https://github.com/phalcon/cphalcon/releases/tag/v5.14.1"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/54xxx/CVE-2026-54736.json"},{"type":"ADVISORY","url":"https://github.com/phalcon/cphalcon/security/advisories/GHSA-8jqh-95g6-7jpj"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-54736"},{"type":"REPORT","url":"https://github.com/phalcon/cphalcon/issues/17090"},{"type":"FIX","url":"https://github.com/phalcon/cphalcon/commit/ad53ab1b2e7ec59b3af92b0b37b8aaa099011137"},{"type":"FIX","url":"https://github.com/phalcon/cphalcon/pull/17091"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T03:51:13.817311910Z"}}