Skip to content
Threat Feed

Vendor

Perl

5 briefs RSS
high advisory

Out-of-Bounds Memory Corruption in Perl Regular Expression Engine

Perl versions through 5.45.1 contain a vulnerability in the S_regmatch function leading to out-of-bounds heap reads and writes during regex processing, which may allow for arbitrary code execution.

Perl
1c
low advisory

Detection of Unusual File Creation by Web Server Processes on Linux

This brief details a behavioral detection strategy for identifying potential web shell deployment and persistence mechanisms by monitoring anomalous file creation activities originating from common web server processes on Linux.

nginx +44 persistence web-shell linux behavioral-detection
1r 4t updated
medium advisory

Suspicious Command Execution via Linux Web Server

This brief describes how attackers exploit vulnerabilities in web applications to execute suspicious shell commands via web server processes on Linux, enabling persistence, discovery, credential access, and reverse shell establishment, which can lead to full system compromise and data exfiltration.

Apache HTTP Server +45 webserver command-injection web-shell vulnerability-exploitation persistence linux
1r 14t
low threat

Vulnerability in Perl DBI Module Before 1.651 (CVE-2026-60082)

A vulnerability, identified as CVE-2026-60082, exists in the DBI module for Perl, specifically in versions before 1.651, related to the module not enforcing statement handle consistency with the row.

exploited DBI < 1.651 vulnerability perl data-integrity
1c
medium advisory

Perl DBI Out-of-Bounds Read Vulnerability CVE-2026-14740

CVE-2026-14740 describes an out-of-bounds read vulnerability in DBI versions prior to 1.650 for Perl, occurring during the preparse stage when deleting an initial SQL comment, which can lead to information disclosure or denial of service.

DBI < 1.650 vulnerability perl memory-corruption information-disclosure
1c