As cited
Copy frozen at (site build).
vulnerabilities
CVE-2026-85644: XS::Parse::Infix versions from 0.40 through 0.49 for Perl treat a number as an array reference
CVE-2026-85644 affects XS::Parse::Infix versions 0.40 through 0.49 for Perl, where the module incorrectly treats a number as an array reference. The vulnerability is tracked in the CPAN Security Group.
Why it matters: Perl developers using the affected XS::Parse::Infix versions should upgrade immediately, as this type conversion error could lead to unexpected behavior or code execution in dependent applications.
- Source published
- First seen by Cybersecurity Tracker