
Perl CPAN CVE-2026-46719,CVE-2026-8788: Net::Statsd::Lite through 0.10.0 allowed metric injections https://www.openwall.com/lists/oss-security/2026/05/16/9 and https://www.openwall.com/lists/oss-security/2026/05/18/1 CVE-2026-46720: Net::Statsd::Tiny before 0.3.8 allowed metric injections https://www.openwall.com/lists/oss-security/2026/05/17/2
Post summary
Disclosed metric injection vulnerabilities in Perl CPAN modules Net::Statsd::Lite and Net::Statsd::Tiny, without an explicit PoC, patch, or evidence of exploitation.

