CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

CVE-2026-82309: Robots::Validate versions from 0.3.2 before 0.3.11 for Perl allow unbounded outbound DNS queries per validation via a forward-confirmation loop that does not bound the names it queries

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 6050

As cited

Copy frozen at (site build).

vulnerabilities

CVE-2026-82309: Robots::Validate versions from 0.3.2 before 0.3.11 for Perl allow unbounded outbound DNS queries per validation via a forward-confirmation loop that does not bound the names it queries

No summary had been written when this copy was frozen.

First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

CVE-2026-82309: Robots::Validate versions from 0.3.2 before 0.3.11 for Perl allow unbounded outbound DNS queries per validation via a forward-confirmation loop that does not bound the names it queries

CVE-2026-82309 affects Robots::Validate for Perl versions 0.3.2 through 0.3.10, enabling attackers to trigger unbounded outbound Domain Name System (DNS) queries through a forward-confirmation loop that does not limit queried hostnames. The vulnerability allows resource exhaustion and potential denial of service against systems running the affected library.

Why it matters: Perl developers and system administrators using Robots::Validate must upgrade to version 0.3.11 or later to prevent attackers from exhausting DNS resolution resources and disrupting application availability.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

vulnerabilities

CVE-2026-82309: Robots::Validate versions from 0.3.2 before 0.3.11 for Perl allow unbounded outbound DNS queries per validation via a forward-confirmation loop that does not bound the names it queries

CVE-2026-82309 affects Robots::Validate for Perl versions 0.3.2 through 0.3.10, enabling attackers to trigger unbounded outbound Domain Name System (DNS) queries through a forward-confirmation loop that does not limit queried hostnames. The vulnerability allows resource exhaustion and potential denial of service against systems running the affected library.

Why it matters: Perl developers and system administrators using Robots::Validate must upgrade to version 0.3.11 or later to prevent attackers from exhausting DNS resolution resources and disrupting application availability.

Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary