The number and severity of CVEs published that impact products developed by Rrwo over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-49941HIGH Net::CIDR::Set versions through 0.20 for Perl did not validate IP addresses.
The add method called the _encode method to parse addresses. If the addresses did not look like netmas | Jun 4, 2026 | 7.5 | 32 | NO | NO |
CVE-2026-49942HIGH Net::CIDR::Set versions through 0.20 for Perl did not validate network masks.
The mask portion of a network mask could contain Unicode digits such as the Arabic-Indic One (U+0661) | Jun 4, 2026 | 7.3 | 31 | NO | NO |
CVE-2026-7040HIGH Text::Minify::XS versions from 0.3.0 before 0.7.8 for Perl have a heap overflow when processing some malformed UTF-8 characters.
The minify functions mishandled some malformed UTF | Apr 27, 2026 | 7.5 | 30 | NO | NO |
CVE-2026-49940MEDIUM Net::CIDR::Set versions through 0.20 for Perl accept non-ASCII IP addresses and netmasks.
Unicode digits such as the Arabic-Indic One (U+0661) were accepted but not properly parse | Jun 4, 2026 | 6.5 | 28 | NO | NO |
CVE-2025-40911MEDIUM Net::CIDR::Set versions 0.10 through 0.13 for Perl does not properly handle leading zero characters in IP CIDR address strings, which could allow attackers to bypass access control | May 27, 2025 | 6.5 | 18 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Rrwo.
Media articles that mention a CVE ID that affects a product developed by Rrwo — matched by CVE ID, not by vendor name.