PatchSiren

IAMB CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

CRITICAL IAMB CVE published 2026-01-06

CVE-2025-15444

The Crypt::Sodium::XS module for Perl, versions prior to 0.000042, includes a vulnerable version of libsodium, specifically versions 1.0.20 or earlier, or any version released before December 30, 2025. This vulnerability, documented as CVE-2025-69277, involves mishandling checks for elliptic curve point validity in certain custom cryptography or untrusted data scenarios. The vulnerability allows points th [truncated]