
Perl CPAN CVE-2026-5089: YAML::Syck before 1.38 has an out-of-bounds read https://www.openwall.com/lists/oss-security/2026/05/12/16 CVE-2026-8463: Crypt::Argon2 from 0.017 before 0.031 perform a heap out-of-bounds read in argon2_verify on empty encoded input https://www.openwall.com/lists/oss-security/2026/05/13/4
Post summary
The post announces two new CVE vulnerabilities impacting CPAN modules, describing out‑of‑bounds read issues but offering no proof of concept, exploit, or patch information.

