CVE-2010-10006 A vulnerability, which was classified as problematic, was found in michaelliao jopenid Affected is the function getAuthentication of the file JOpenId/src/org/expressme/openid/OpenIdManagerjava The manipulation leads to observable timing discrepancy Upgrading to version 108 is able to address this issue The name of the patch is c9baaa976b684637f0d5a50268e918