As cited
Copy frozen at (site build).
vulnerabilities
CVE-2026-82309: Robots::Validate versions from 0.3.2 before 0.3.11 for Perl allow unbounded outbound DNS queries per validation via a forward-confirmation loop that does not bound the names it queries
No summary had been written when this copy was frozen.
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
CVE-2026-82309: Robots::Validate versions from 0.3.2 before 0.3.11 for Perl allow unbounded outbound DNS queries per validation via a forward-confirmation loop that does not bound the names it queries
CVE-2026-82309 affects Robots::Validate for Perl versions 0.3.2 through 0.3.10, enabling attackers to trigger unbounded outbound Domain Name System (DNS) queries through a forward-confirmation loop that does not limit queried hostnames. The vulnerability allows resource exhaustion and potential denial of service against systems running the affected library.
Why it matters: Perl developers and system administrators using Robots::Validate must upgrade to version 0.3.11 or later to prevent attackers from exhausting DNS resolution resources and disrupting application availability.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
vulnerabilities
CVE-2026-82309: Robots::Validate versions from 0.3.2 before 0.3.11 for Perl allow unbounded outbound DNS queries per validation via a forward-confirmation loop that does not bound the names it queries
CVE-2026-82309 affects Robots::Validate for Perl versions 0.3.2 through 0.3.10, enabling attackers to trigger unbounded outbound Domain Name System (DNS) queries through a forward-confirmation loop that does not limit queried hostnames. The vulnerability allows resource exhaustion and potential denial of service against systems running the affected library.
Why it matters: Perl developers and system administrators using Robots::Validate must upgrade to version 0.3.11 or later to prevent attackers from exhausting DNS resolution resources and disrupting application availability.
- Source published
- First seen by Cybersecurity Tracker