PatchSiren

libwww-perl CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM libwww-perl CVE published 2026-08-31

CVE-2026-19953

The URI library for Perl, versions before 5.36, contains a vulnerability that can lead to security issues due to improper handling of non-NFC host names. This results in non-standard punycode labels being generated, which can impact security decisions based on host names. Affected applications may be vulnerable to security bypass or information disclosure if they rely on host name-based security controls. [truncated]