Latest CVEs
The 15 most recently published vulnerabilities affecting rrwo.
- CVE-2026-18536Data::Entropy versions before 0.010 for Perl read remote entropy sources over plain HTTP7.5
- CVE-2026-17552Plack::App::Prerender versions before 0.3.0 for Perl can proxy to an arbitrary host via unvalidated REQUEST_URI concatenation in call9.1
- CVE-2026-16766Catalyst::View::Wkhtmltopdf versions before 0.6.1 for Perl allow shell command injection (RCE) via PDF render options9.8
- CVE-2026-49942Net::CIDR::Set versions through 0.20 for Perl did not validate network masks7.3
- CVE-2026-49941Net::CIDR::Set versions through 0.20 for Perl did not validate IP addresses7.5
- CVE-2026-49940Net::CIDR::Set versions through 0.20 for Perl accept non-ASCII IP addresses and netmasks6.5
- CVE-2026-9658Plack::Middleware::Security::Common versions before 0.13.1 for Perl did not block header injections in request paths7.3
- CVE-2026-46740Mojolicious::Plugin::Statsd versions through 0.04 for Perl allowed metric injections5.3
- CVE-2026-47372Crypt::SaltedHash versions through 0.09 for Perl generate insecure random values for salts9.1
- CVE-2026-47373Crypt::SaltedHash versions through 0.09 for Perl is susceptible to timing attacks7.5
- CVE-2026-8788Net::Statsd::Lite versions through 0.10.0 for Perl allowed metric injections7.3
- CVE-2026-46720Net::Statsd::Tiny versions before 0.3.8 for Perl allowed metric injections8.2
- CVE-2026-46719Net::Statsd::Lite versions before 0.9.0 for Perl allowed metric injections6.5
- CVE-2026-45180Catalyst::Plugin::Statsd versions through 0.10.0 for Perl may leak session ids7.5
- CVE-2026-45179Plack::Middleware::Statsd versions before 0.9.0 for Perl may leak user IP addresses5.3