Vulnerabilidades em TODDR

10 resultados
Análise Vexday

TODDR apresenta 10 vulnerabilidades catalogadas, com 4 classificadas como críticas, mas nenhuma sob exploração ativa conhecida. A maior preocupação é a recência do risco: 6 das 10 falhas foram divulgadas nos últimos 90 dias, indicando uma janela de remediação ainda aberta. A fraqueza dominante (CWE-122 - buffer overrun) sugere falhas estruturais de validação de entrada que demandam atenção prioritária.

CVE-2006-10002CRITICALXML::Parser versions through 2.45 for Perl could overflow the pre-allocated buffer size cause a heap corruption (double free or corruption) and crashesEPSS 0.6%CVE-2006-10003CRITICALXML::Parser versions through 2.47 for Perl has an off-by-one heap buffer overflow in st_serial_stackEPSS 0.5%CVE-2026-4177CRITICALYAML::Syck versions through 1.36 for Perl has several potential security vulnerabilities including a high-severity heap buffer overflow in the YAML emitterEPSS 0.4%CVE-2026-57075CRITICALYAML::Syck versions before 1.47 for Perl allow an out-of-bounds read via a signed-char lookup-table index in syck_base64decEPSS 0.4%CVE-2026-5089HIGHYAML::Syck versions before 1.38 for Perl has an out-of-bounds readEPSS 0.3%CVE-2026-5090MEDIUMTemplate::Plugin::HTML versions through 3.102 for Perl allows HTML and JavaScript to be injectedEPSS 0.3%CVE-2025-11683MEDIUMYAML::Syck versions before 1.36 for Perl has missing Null-Terminators which causes Out-of-Bounds Read and potential Information DisclosureEPSS 0.2%CVE-2026-57077HIGHYAML::Syck versions before 1.47 for Perl allow an out-of-bounds read via an unbounded newline scan in newline_lenEPSS 0.1%CVE-2026-13713MEDIUMYAML::Syck versions before 1.47 for Perl allow a use-after-free and double-free via an anchor node freed while still on the parser value stackEPSS 0.1%CVE-2026-57076HIGHYAML::Syck versions before 1.47 for Perl allow a heap use-after-free via an anchor name reused as an anchors-table key in syck_hdlr_add_anchorEPSS 0.1%