login
login
Home
CPANSec CVE announcements
Archive index April 2026
Date Index - April 2026 - CPANSec CVE announcements
Search:
Search
« March
Archive index
By threads
Refresh
May »
08 Apr 2026 05:51 UTC
CVE-2026-5082: Amon2::Plugin::Web::CSRFDefender versions from 7.00 through 7.03 for Perl generate an insecure session id
Robert Rothenberg
08 Apr 2026 05:56 UTC
CVE-2026-5083: Ado::Sessions versions through 0.935 for Perl generates insecure session ids
Robert Rothenberg
10 Apr 2026 21:45 UTC
CVE-2026-40198: Net::CIDR::Lite versions before 0.23 for Perl does not validate IPv6 group count, which may allow IP ACL bypass
Stig Palmquist
10 Apr 2026 21:53 UTC
CVE-2026-40199: Net::CIDR::Lite versions before 0.23 for Perl mishandles IPv4 mapped IPv6 addresses, which may allow IP ACL bypass
Stig Palmquist
13 Apr 2026 07:00 UTC
CVE-2026-5085: Solstice::Session versions through 1440 for Perl generates session ids insecurely
Robert Rothenberg