oss-security·2d agoCVE-2026-95811: Lemonldap::NG::Handler versions from 2.0.0 before 2.16.10, from 2.17.0 before 2.21.6, from 2.22.0 before 2.23.4 for Perl allow an equivalent spelling of a path to bypass the locationRules that restrict it#lemonldap-ng#perl#cve-2026-95811CVE-2026-95811 3 sources
oss-security·2d ago highRe: CVE-2026-95831: Crypt::SelfCertificate versions from 1.01 through 1.05 for Perl contains malware which executes Python code from an obfuscated URL#cpan#perl#supply-chainCVE-2026-95831 4 sources in the wild
oss-security·4d agoCVE-2026-87080: Net::IDN::Punycode::PP versions before 2.590 for Perl decode a truncated label to a name containing a character it never encoded in decode_punycode#perl#cpan#punycodeCVE-2026-87080 8 sources