Vulnerabilidades em HMBRAND
10 resultadosAnálise Vexday
A HMBRAND apresenta 10 vulnerabilidades catalogadas, todas publicadas nos últimos 90 dias, com 5 classificadas como críticas (CVSS alto). Embora nenhuma esteja sob ataque ativo conhecido (KEV), a predominância de CWE-787 (buffer overflow) indica vetor de exploração bem estabelecido. O volume recente e a concentração em falhas de memória demandam priorização imediata de patches.
CVE-2026-10879CRITICALDBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 bindersEPSS 0.5%CVE-2026-14380HIGHDBI versions before 1.650 for Perl are vulnerable to code injection via caller-influenced ProfileEPSS 0.5%CVE-2026-9698HIGHDBI versions before 1.648 for Perl saved errors in a limited-sized bufferEPSS 0.5%CVE-2026-14739CRITICALDBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholdersEPSS 0.4%CVE-2026-15043CRITICALDBI::SQL::Nano versions from 1.42 before 1.651 for Perl have inverted <= and >= SQL operators on textEPSS 0.4%CVE-2026-14740CRITICALDBI versions before 1.650 for Perl read one byte out-of-bounds in preparse when deleting an initial SQL commentEPSS 0.4%CVE-2026-60082CRITICALDBI versions before 1.651 for Perl do not enforce statement handle consistency with the rowEPSS 0.4%CVE-2026-60081HIGHDBI::ProfileData versions before 1.651 for Perl do not limit the path indexEPSS 0.4%CVE-2026-15392HIGHDBD::File versions before 1.651 for Perl do not ensure the table file is not a symlink to an untrusted locationEPSS 0.2%CVE-2026-7111HIGHText::CSV_XS versions before 1.62 for Perl have a use-after-free when registered callbacks extend the Perl argument stack, which may enable type confusion or memory corruptionEPSS 0.2%