Stigtsp's vulnerability footprint centers on a narrowly scoped network product, with the durable signal reflecting input-validation weaknesses including improper handling of length-parameter inconsistencies and insufficient syntactic validation. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Stigtsp over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-45191MEDIUM Net::CIDR::Lite versions before 0.24 for Perl does not properly consider extraneous zero characters in CIDR mask values, which may allow IP ACL bypass.
Mask forms like "/00" and " | May 10, 2026 | 6.5 | 27 | NO | NO |
CVE-2026-45190MEDIUM Net::CIDR::Lite versions before 0.24 for Perl does not properly validate IP address and CIDR mask inputs, which may allow IP ACL bypass.
Inputs containing a trailing newline or no | May 10, 2026 | 6.5 | 27 | NO | NO |
CVE-2026-40198HIGH Net::CIDR::Lite versions before 0.23 for Perl does not validate IPv6 group count, which may allow IP ACL bypass.
_pack_ipv6() does not check that uncompressed IPv6 addresses (with | Apr 10, 2026 | 7.5 | 27 | NO | NO |
CVE-2026-40199MEDIUM Net::CIDR::Lite versions before 0.23 for Perl mishandles IPv4 mapped IPv6 addresses, which may allow IP ACL bypass.
_pack_ipv6() includes the sentinel byte from _pack_ipv4() when | Apr 10, 2026 | 6.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Stigtsp.
Media articles that mention a CVE ID that affects a product developed by Stigtsp — matched by CVE ID, not by vendor name.