
Perl CPAN CVE-2022-4988: Alien::FreeImage through 1.001 contains several vulnerable libraries https://www.openwall.com/lists/oss-security/2026/05/11/14 CVE-2026-6146: Amazon::Credentials through 1.2.0 uses rand to generate encryption keys https://www.openwall.com/lists/oss-security/2026/05/11/15
Post summary
The text announces new CVE disclosures for Perl CPAN modules, noting vulnerable libraries and weak key generation, but offers no PoC, exploit code, active exploitation evidence, or patch information.
