
Perl CPAN CVE-2026-56017: JavaScript::Minifier::XS before 0.16 may crash with a NULL pointer dereference https://www.openwall.com/lists/oss-security/2026/06/29/16 CVE-2026-56018: JavaScript::Minifier::XS before 0.16 leak memory on every call to minify() https://www.openwall.com/lists/oss-security/2026/06/29/17
Post summary
The text announces two new CVEs (CVE-2026-56017 and CVE-2026-56018) for JavaScript::Minifier::XS, highlighting a crash due to a NULL pointer dereference and a memory leak, respectively.

