Perlpodder is a documentation-processing tool for Perl that addresses a narrowly scoped but structurally important use case in the Perl ecosystem. The observed weakness classes center on code-injection risks and related control-flow issues, reflecting the challenges inherent to systems that parse and execute embedded Perl code; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Perlpodder over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-2548HIGH Prodder before 0.5, and perlpodder before 0.5, allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast (url attribute of an enclosure tag | May 23, 2006 | 7.5 | 32 | NO | YES |
CVE-2006-2550MEDIUM perlpodder before 0.5 allows remote attackers to execute arbitrary code via shell metacharacters in the URL of a podcast, which are executed when saving the URL to a log file. NOT | May 23, 2006 | 5.1 | 16 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Perlpodder.
Media articles that mention a CVE ID that affects a product developed by Perlpodder — matched by CVE ID, not by vendor name.