
5 CVEs in Perl CPAN modules https://www.openwall.com/lists/oss-security/2026/03/05/ CVE-2024-57854: Net::NSCA::Client versions through 0.009002 uses a poor random number generator CVE-2025-40926: Plack::Middleware::Session::Simple versions through 0.04 generates session ids insecurely + next tweet
Post summary
The post announces five Perl CPAN module CVEs, lists two with brief technical descriptions, and provides a link to a mailing list thread, but offers no PoC, exploit code, patch, or evidence of active exploitation.

