
Perl CPAN CVE-2026-8177: XML::LibXML through 2.0210 read out-of-bounds heap memory when parsing XML node names containing truncated UTF-8 https://www.openwall.com/lists/oss-security/2026/05/10/8 CVE-2026-5084: WebDyne::Session through 2.075 generates the session id insecurely https://www.openwall.com/lists/oss-security/2026/05/11/3
Post summary
The message lists two new CVEs affecting Perl CPAN modules, providing technical details without indicating PoCs, exploits, active use, or mitigations.


