๐Ÿ” CVE Alert

CVE-2026-8829

HIGH 7.5

HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities

CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th

HTML::Entities versions before 3.84 for Perl read freed heap memory in _decode_entities. The XS routine backing HTML::Entities::_decode_entities cached a pointer (repl) into the entity-value SV returned by hv_fetch on the entity2char hash. When the input SV was identical to a value SV in that hash, and that value contained its own key as an entity reference, a later call to grow_gap() reallocated the SV's PV buffer and freed the backing allocation that repl still pointed into. The subsequent copy loop read repl_len bytes from the freed allocation. The read may disclose adjacent heap contents into the destination SV.

CWE CWE-416
Vendor oalders
Product html::entities
Published Jun 4, 2026
Last Updated Jun 4, 2026
Stay Ahead of the Next One

Get instant alerts for oalders html::entities

Be the first to know when new high vulnerabilities affecting oalders html::entities are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

OALDERS / HTML::Entities
0 < 3.84

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/libwww-perl/HTML-Parser/pull/56 github.com: https://github.com/libwww-perl/HTML-Parser/commit/6922552b0778c90a9587a3894e248be4d3a25e1c.patch openwall.com: http://www.openwall.com/lists/oss-security/2026/06/04/2