-Infinity
0

Perl String::Compare::ConstantTimeString::Compare::ConstantTime for Perl through 0.321 is vulnerable to timing attacks that allow an attacker to guess the length of a secret string

7.5
First published (updated )

Crypt::RandomPerl's Crypt::Random module after 1.05 and before 1.56 may use rand() function for cryptographic functions

8.8
First published (updated )

Perl 5.30.0 5.40End of life

First published (updated )

Perl 5.30.0 5.40End of life

First published (updated )

MojoliciousThe Mojolicious module before 8.65 for Perl is vulnerable to secure_compare timing attacks that allo…

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Crypt-OpenSSL-RSAPerl-crypt-openssl-rsa: side-channel attack in pkcs#1 v1.5 padding mode (marvin attack)

First published (updated )

Crypt-OpenSSL-RSAA timing based side-channel exists in the perl-Crypt-OpenSSL-RSA package which could be sufficient t…

First published (updated )

IBM AIXIn Perl before 5.38.2, S_parse_uniprop_string in regcomp.c can write to unallocated space because a …

First published (updated )

New CVEs and security fix releases for perl

redhat/perlPerl: perl for windows binary hijacking vulnerability

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

ubuntu/perlPerl: write past buffer end via illegal user-defined unicode property

7.8
First published (updated )

debian/perlIn Perl 5.34.0, function S_find_uninit_var in sv.c has a stack-based crash that can lead to remote c…

First published (updated )

Perl 5.30.0 5.38End of life

First published (updated )

Perl 5.30.0 5.38End of life

First published (updated )

IBM Cognos AnalyticsCPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS.

8.1
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

redhat/HTTP-TinyHTTP::Tiny before 0.083, a Perl core module since 5.13.9 and available standalone on CPAN, has an in…

8.1
First published (updated )

Perl 5.30.0 5.36Out of support

First published (updated )

Perl 5.30.0 5.36Out of support

First published (updated )

Comprehensive Perl Archive NetworkCPAN 2.28 allows Signature Verification Bypass.

7.8
First published (updated )

IBM Cognos AnalyticsEncode could allow a local authenticated attacker to gain elevated privileges on the system, caused …

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Perl 5.30.0 5.34Reached end of life

First published (updated )

Perl 5.30.0 5.34Reached end of life

First published (updated )

Red Hat FedoraExifTool Remote Code Execution Vulnerability

First published (updated )

ubuntu/libdbi-perlNull Pointer Dereference

First published (updated )

SUSE Perl-DBIAn issue was discovered in the DBI module through 1.643 for Perl. DBD::File drivers can open files f…

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

SUSE Perl-DBIAn issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user…

First published (updated )

ubuntu/libdbi-perlBuffer Overflow

First published (updated )

ubuntu/libdbi-perlAn issue was discovered in the DBI module before 1.632 for Perl. DBD::File drivers can open files fr…

First published (updated )

redhat/perl-DBIBuffer Overflow

7.1
First published (updated )

UbuntuBuffer Overflow

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203