perl kayıtları
perl üreticisine ait 77 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %1,3
- Pre-auth RCE
- 11
- Düzeltme kaydı olan
- %93,5
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer10
- CWE-787 Out-of-bounds Write7
- CWE-20 Improper Input Validation6
- CWE-264 Permissions, Privileges, and Access Controls5
- CWE-125 Out-of-bounds Read5
- CWE-189 Numeric Errors5
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
77 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
49Planlayın | CVE-2012-6329Silahlaştırılmış | The _compile function in Maketext.pm in the Locale::Maketext implementation in Perl before 5.17.7 does not properly handle backslashes and fperl · perl · CWE-94 | Yüksek7,5 | — | %63,5 | 4 Oca 2013 |
43Planlayın | CVE-2018-18312İstismar yok | Perl before 5.26.3 and 5.28.0 before 5.28.1 has a buffer overflow via a crafted regular expression that triggers invalid write operations.perl · perl · CWE-119 | Kritik9,8 | — | %12,1 | 5 Ara 2018 |
43Planlayın | CVE-2018-18311İstismar yok | Perl before 5.26.3 and 5.28.x before 5.28.1 has a buffer overflow via a crafted regular expression that triggers invalid write operations.perl · perl · CWE-190 | Kritik9,8 | — | %11,7 | 7 Ara 2018 |
42Planlayın | CVE-2018-6913İstismar yok | Heap-based buffer overflow in the pack function in Perl before 5.26.2 allows context-dependent attackers to execute arbitrary code via a larperl · perl · CWE-787 | Kritik9,8 | — | %10,7 | 17 Nis 2018 |
41Planlayın | CVE-2017-12814İstismar yok | Stack-based buffer overflow in the CPerlHost::Add method in win32/perlhost.h in Perl before 5.24.3-RC1 and 5.26.x before 5.26.1-RC1 on Windoperl · perl · CWE-119 | Kritik9,8 | — | %7,0 | 27 Eyl 2017 |
41Planlayın | CVE-2018-6797İstismar yok | An issue was discovered in Perl 5.18 through 5.26.perl · perl · CWE-787 | Kritik9,8 | — | %6,5 | 17 Nis 2018 |
41Planlayın | CVE-2018-18314İstismar yok | Perl before 5.26.3 has a buffer overflow via a crafted regular expression that triggers invalid write operations.perl · perl · CWE-119 | Kritik9,8 | — | %6,1 | 7 Ara 2018 |
40Planlayın | CVE-2015-8608İstismar yok | The VDir::MapPathA and VDir::MapPathW functions in Perl 5.22 allow remote attackers to cause a denial of service (out-of-bounds read) and poperl · perl · CWE-125 | Kritik9,8 | — | %4,6 | 7 Şub 2017 |
40Planlayın | CVE-2022-48522İstismar yok | In Perl 5.34.0, function S_find_uninit_var in sv.c has a stack-based crash that can lead to remote code execution or local privilege escalatperl · perl · CWE-787 | Kritik9,8 | — | %2,6 | 22 Ağu 2023 |
39İzleyin | CVE-2018-18313İstismar yok | Perl before 5.26.3 has a buffer over-read via a crafted regular expression that triggers disclosure of sensitive information from process meperl · perl · CWE-125 | Kritik9,1 | — | %9,5 | 7 Ara 2018 |
39İzleyin | CVE-2026-9698İstismar yok | DBI versions before 1.648 for Perl saved errors in a limited-sized bufferperl · dbi · CWE-787 | Kritik9,8 | — | %0,8 | 9 Haz 2026 |
39İzleyin | CVE-2026-4176İstismar yok | Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlibperl · perl · CWE-1395 | Kritik9,8 | — | %0,8 | 29 Mar 2026 |
39İzleyin | CVE-2024-55564İstismar yok | The POSIX::2008 package before 0.24 for Perl has a potential _execve50c env buffer overflow.CWE-120 | Kritik9,8 | — | %0,5 | 8 Ara 2024 |
39İzleyin | CVE-2026-10879İstismar yok | DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 bindersperl · dbi · CWE-787 | Kritik9,8 | — | %0,5 | 5 Haz 2026 |
39İzleyin | CVE-2026-8376İstismar yok | Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.11 have a heap buffer overflow when compiling regular expressions with aperl · perl · CWE-680 | Kritik9,8 | — | %0,5 | 25 May 2026 |
39İzleyin | CVE-2026-14739İstismar yok | DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholdersperl · dbi · CWE-787 | Kritik9,8 | — | %0,4 | 7 Tem 2026 |
38İzleyin | CVE-2017-12883İstismar yok | Buffer overflow in the S_grok_bslash_N function in regcomp.c in Perl 5 before 5.24.3-RC1 and 5.26.x before 5.26.1-RC1 allows remote attackerperl · perl · CWE-119 | Kritik9,1 | — | %5,9 | 19 Eyl 2017 |
36İzleyin | CVE-2021-47155İstismar yok | The Net::IPV4Addr module 0.10 for Perl does not properly consider extraneous zero characters in an IP address string, which (in some situatiCWE-284 | Kritik9,1 | — | %0,5 | 18 Mar 2024 |
36İzleyin | CVE-2026-13221İstismar yok | Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.10 produce silently incorrect regular expression matches when an alternaperl · perl · CWE-190 | Kritik9,1 | — | %0,4 | 13 Tem 2026 |
36İzleyin | CVE-2026-14740İstismar yok | DBI versions before 1.650 for Perl read one byte out-of-bounds in preparse when deleting an initial SQL commentperl · dbi · CWE-125 | Kritik9,1 | — | %0,4 | 7 Tem 2026 |
35İzleyin | CVE-2020-10543İstismar yok | Perl before 5.30.3 on 32-bit platforms allows a heap-based buffer overflow because nested regular expression quantifiers have an integer oveperl · perl · CWE-190 | Yüksek8,2 | — | %11,3 | 5 Haz 2020 |
35İzleyin | CVE-2020-10878İstismar yok | Perl before 5.30.3 has an integer overflow related to mishandling of a "PL_regkind[OP(n)] == NOTHING" situation.perl · perl · CWE-190 | Yüksek8,6 | — | %4,9 | 5 Haz 2020 |
35İzleyin | CVE-2026-14380İstismar yok | DBI versions before 1.650 for Perl are vulnerable to code injection via caller-influenced Profileperl · dbi · CWE-95 | Yüksek8,8 | — | %0,5 | 7 Tem 2026 |
34İzleyin | CVE-2005-1349Kavram kanıtı | Buffer overflow in Convert-UUlib (Convert::UUlib) before 1.051 allows remote attackers to execute arbitrary code via a malformed parameter tperl · convert uulib | Yüksek7,5 | — | %12,8 | 2 May 2005 |
33İzleyin | CVE-2016-2381İstismar yok | Perl might allow context-dependent attackers to bypass the taint protection mechanism in a child process via duplicate environment variablesperl · perl · CWE-20 | Yüksek7,5 | — | %9,1 | 8 Nis 2016 |
- CVE-2012-632949Planlayın
The _compile function in Maketext.pm in the Locale::Maketext implementation in Perl before 5.17.7 does not properly handle backslashes and f
YüksekCVSS 7,5SilahlaştırılmışEPSS %63perl · perl4 Oca 2013
- CVE-2018-1831243Planlayın
Perl before 5.26.3 and 5.28.0 before 5.28.1 has a buffer overflow via a crafted regular expression that triggers invalid write operations.
KritikCVSS 9,8İstismar yokEPSS %12perl · perl5 Ara 2018
- CVE-2018-1831143Planlayın
Perl before 5.26.3 and 5.28.x before 5.28.1 has a buffer overflow via a crafted regular expression that triggers invalid write operations.
KritikCVSS 9,8İstismar yokEPSS %12perl · perl7 Ara 2018
- CVE-2018-691342Planlayın
Heap-based buffer overflow in the pack function in Perl before 5.26.2 allows context-dependent attackers to execute arbitrary code via a lar
KritikCVSS 9,8İstismar yokEPSS %11perl · perl17 Nis 2018
- CVE-2017-1281441Planlayın
Stack-based buffer overflow in the CPerlHost::Add method in win32/perlhost.h in Perl before 5.24.3-RC1 and 5.26.x before 5.26.1-RC1 on Windo
KritikCVSS 9,8İstismar yokEPSS %7perl · perl27 Eyl 2017
- CVE-2018-679741Planlayın
An issue was discovered in Perl 5.18 through 5.26.
KritikCVSS 9,8İstismar yokEPSS %6perl · perl17 Nis 2018
- CVE-2018-1831441Planlayın
Perl before 5.26.3 has a buffer overflow via a crafted regular expression that triggers invalid write operations.
KritikCVSS 9,8İstismar yokEPSS %6perl · perl7 Ara 2018
- CVE-2015-860840Planlayın
The VDir::MapPathA and VDir::MapPathW functions in Perl 5.22 allow remote attackers to cause a denial of service (out-of-bounds read) and po
KritikCVSS 9,8İstismar yokEPSS %5perl · perl7 Şub 2017
- CVE-2022-4852240Planlayın
In Perl 5.34.0, function S_find_uninit_var in sv.c has a stack-based crash that can lead to remote code execution or local privilege escalat
KritikCVSS 9,8İstismar yokEPSS %3perl · perl22 Ağu 2023
- CVE-2018-1831339İzleyin
Perl before 5.26.3 has a buffer over-read via a crafted regular expression that triggers disclosure of sensitive information from process me
KritikCVSS 9,1İstismar yokEPSS %10perl · perl7 Ara 2018
- CVE-2026-969839İzleyin
DBI versions before 1.648 for Perl saved errors in a limited-sized buffer
KritikCVSS 9,8İstismar yokEPSS %1perl · dbi9 Haz 2026
- CVE-2026-417639İzleyin
Perl versions from 5.9.4 before 5.40.4-RC1, from 5.41.0 before 5.42.2-RC1, from 5.43.0 before 5.43.9 contain a vulnerable version of Compress::Raw::Zlib
KritikCVSS 9,8İstismar yokEPSS %1perl · perl29 Mar 2026
- CVE-2024-5556439İzleyin
The POSIX::2008 package before 0.24 for Perl has a potential _execve50c env buffer overflow.
KritikCVSS 9,8İstismar yokEPSS %18 Ara 2024
- CVE-2026-1087939İzleyin
DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 binders
KritikCVSS 9,8İstismar yokEPSS %0perl · dbi5 Haz 2026
- CVE-2026-837639İzleyin
Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.11 have a heap buffer overflow when compiling regular expressions with a
KritikCVSS 9,8İstismar yokEPSS %0perl · perl25 May 2026
- CVE-2026-1473939İzleyin
DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders
KritikCVSS 9,8İstismar yokEPSS %0perl · dbi7 Tem 2026
- CVE-2017-1288338İzleyin
Buffer overflow in the S_grok_bslash_N function in regcomp.c in Perl 5 before 5.24.3-RC1 and 5.26.x before 5.26.1-RC1 allows remote attacker
KritikCVSS 9,1İstismar yokEPSS %6perl · perl19 Eyl 2017
- CVE-2021-4715536İzleyin
The Net::IPV4Addr module 0.10 for Perl does not properly consider extraneous zero characters in an IP address string, which (in some situati
KritikCVSS 9,1İstismar yokEPSS %118 Mar 2024
- CVE-2026-1322136İzleyin
Perl versions before 5.40.5-RC1, from 5.41.0 before 5.42.3-RC1, from 5.43.0 before 5.43.10 produce silently incorrect regular expression matches when an alterna
KritikCVSS 9,1İstismar yokEPSS %0perl · perl13 Tem 2026
- CVE-2026-1474036İzleyin
DBI versions before 1.650 for Perl read one byte out-of-bounds in preparse when deleting an initial SQL comment
KritikCVSS 9,1İstismar yokEPSS %0perl · dbi7 Tem 2026
- CVE-2020-1054335İzleyin
Perl before 5.30.3 on 32-bit platforms allows a heap-based buffer overflow because nested regular expression quantifiers have an integer ove
YüksekCVSS 8,2İstismar yokEPSS %11perl · perl5 Haz 2020
- CVE-2020-1087835İzleyin
Perl before 5.30.3 has an integer overflow related to mishandling of a "PL_regkind[OP(n)] == NOTHING" situation.
YüksekCVSS 8,6İstismar yokEPSS %5perl · perl5 Haz 2020
- CVE-2026-1438035İzleyin
DBI versions before 1.650 for Perl are vulnerable to code injection via caller-influenced Profile
YüksekCVSS 8,8İstismar yokEPSS %0perl · dbi7 Tem 2026
- CVE-2005-134934İzleyin
Buffer overflow in Convert-UUlib (Convert::UUlib) before 1.051 allows remote attackers to execute arbitrary code via a malformed parameter t
YüksekCVSS 7,5Kavram kanıtıEPSS %13perl · convert uulib2 May 2005
- CVE-2016-238133İzleyin
Perl might allow context-dependent attackers to bypass the taint protection mechanism in a child process via duplicate environment variables
YüksekCVSS 7,5İstismar yokEPSS %9perl · perl8 Nis 2016