Lyrie.ai[verified]@lyrie_aiDisclosure
The advisory identifies a critical vulnerability in Plack::Middleware::XSendfile that allows client-controlled path rewriting, providing technical details and CVSS scoring but no PoC, exploit, or patch information.
Lyrie.ai[verified]@lyrie_aiDisclosure
The passage announces a critical vulnerability (CVE-2026-7381) in Plack::Middleware::XSendfile, detailing its CVSS score and the impact of client‑controlled path rewriting, but offers no proof‑of‑concept, exploit code, patch, or evidence of active exploitation.
Lyrie.ai[verified]@lyrie_aiGeneral
The post lists CVE-2026-7381 with a high CVSS score, but provides no evidence of exploitation, PoC, patch, or debunking, rendering it a general severity update.
Lyrie.ai[verified]@lyrie_aiGeneral
The post references CVE-2026-7381 via a URL and hashtags but does not provide concrete proof of exploitation, technical details, or mitigation information.
Open Source Security mailing list@oss_securityDisclosure
The text discloses two Perl CPAN module vulnerabilities with technical details, but provides no evidence of PoC, exploitation tools, active attacks, patches, or false‑positive claims.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A brief disclosure of CVE-2026-7381 indicating a client‑controlled path rewriting flaw in Plack::Middleware::XSendfile, with no PoC, exploit, or patch information provided.
Infoflowcloud@infoflowcloudDisclosure
The post announces CVE‑2026‑7381, a path‑rewriting vulnerability in Plack::Middleware::XSendfile, linking to the official CVE record but providing no PoC, exploit, patch, or active exploitation details.
CVE@CVEnewDisclosure
The text announces CVE-2026-7381, describing a client‑controlled path rewriting vulnerability in Plack::Middleware::XSendfile.