Skip to main content

Vendor/product archive

perl / dbi CVEs

Beta · best-effort

10 CVEs tagged to perl / dbi4 Critical, 1 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2026-14740

Published Jul 7, 2026

DBI versions before 1.650 for Perl read one byte out-of-bounds in preparse when deleting an initial SQL comment. The preparse method normalises SQL and removes comments. When the…

CVSS 9.1 · Critical
evidence mentions
5
Buzz score
34.4
Vendor/product tagsBeta · best-effort

CVE-2026-14739

Published Jul 7, 2026

DBI versions before 1.650 for Perl have a heap overflow when preparsing SQL statements with an extreme number of placeholders. The fix for CVE-2026-10879 did not allocate enough…

CVSS 9.8 · Critical
evidence mentions
4
Buzz score
36.1
Vendor/product tagsBeta · best-effort

CVE-2026-14380

Published Jul 7, 2026

DBI versions before 1.650 for Perl are vulnerable to code injection via caller-influenced Profile. When a string is assigned to a DBI handle's Profile attribute, DBI splits it in…

CVSS 8.8 · High
evidence mentions
5
Buzz score
34.4
Vendor/product tagsBeta · best-effort

CVE-2026-9698

Published Jun 9, 2026

DBI versions before 1.648 for Perl saved errors in a limited-sized buffer. Error messages that were returned when RaiseError, PrintError or HandleError were set were written to a…

CVSS 9.8 · Critical
evidence mentions
9
Buzz score
42.5
Vendor/product tagsBeta · best-effort

CVE-2026-10879

Published Jun 5, 2026

DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 binders. The preparse method expands SQL placeholder characters to numbere…

CVSS 9.8 · Critical
evidence mentions
5
Buzz score
35.9
Vendor/product tagsBeta · best-effort

CVE-2014-10402

Published Sep 16, 2020

An issue was discovered in the DBI module through 1.643 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute in the…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-10401

Published Sep 11, 2020

An issue was discovered in the DBI module before 1.632 for Perl. DBD::File drivers can open files from folders other than those specifically passed via the f_dir attribute.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-7491

Published Sep 11, 2020

An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function requires a non-trivial amount of memory and the Perl stack ge…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-7490

Published Sep 11, 2020

An issue was discovered in the DBI module before 1.632 for Perl. Using many arguments to methods for Callbacks may lead to memory corruption.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1