Vulnerabilities > Perl > Perl > 5.37.3

DATE CVE VULNERABILITY TITLE RISK
2023-12-02 CVE-2023-47100 Improper Handling of Exceptional Conditions vulnerability in Perl
In Perl before 5.38.2, S_parse_uniprop_string in regcomp.c can write to unallocated space because a property name associated with a \p{...} regular expression construct is mishandled.
network
low complexity
perl CWE-755
critical
9.8
2023-04-29 CVE-2023-31484 Improper Certificate Validation vulnerability in multiple products
CPAN.pm before 2.35 does not verify TLS certificates when downloading distributions over HTTPS.
network
high complexity
cpanpm-project perl CWE-295
8.1
2023-04-29 CVE-2023-31486 Improper Certificate Validation vulnerability in multiple products
HTTP::Tiny before 0.083, a Perl core module since 5.13.9 and available standalone on CPAN, has an insecure default TLS configuration where users must opt in to verify certificates.
network
high complexity
http perl CWE-295
8.1