๐Ÿ” CVE Alert

CVE-2026-46719

MEDIUM 6.5

Net::Statsd::Lite versions before 0.9.0 for Perl allowed metric injections

CVSS Score
6.5
EPSS Score
0.3%
EPSS Percentile
22th

Net::Statsd::Lite versions before 0.9.0 for Perl allowed metric injections. The metric names were not checked for newlines, colons or pipes. Metrics generated from untrusted sources could inject additional statsd metrics.

CWE CWE-93 CWE-150
Vendor rrwo
Product net::statsd::lite
Published May 16, 2026
Last Updated Jun 19, 2026
Stay Ahead of the Next One

Get instant alerts for rrwo net::statsd::lite

Be the first to know when new medium vulnerabilities affecting rrwo net::statsd::lite are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

RRWO / Net::Statsd::Lite
0 < 0.9.0

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
metacpan.org: https://metacpan.org/release/RRWO/Net-Statsd-Lite-v0.9.0/changes github.com: https://github.com/robrwo/Net-Statsd-Lite/commit/e1a8ab866d75c2827982134e9cf7e51a7f771153.patch openwall.com: http://www.openwall.com/lists/oss-security/2026/05/16/9