
Perl CPAN CVE-2026-5089: YAML::Syck before 1.38 has an out-of-bounds read https://www.openwall.com/lists/oss-security/2026/05/12/16 CVE-2026-8463: Crypt::Argon2 from 0.017 before 0.031 perform a heap out-of-bounds read in argon2_verify on empty encoded input https://www.openwall.com/lists/oss-security/2026/05/13/4
Post summary
Two CVEs (YAML::Syck and Crypt::Argon2) are disclosed as causing out‑of‑bounds read vulnerabilities, with links to advisories but no PoC, exploit or patch details.
