Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

RRWO — Vulnerabilities & Security Advisories 20

Browse all 20 CVE security advisories affecting RRWO. AI-powered Chinese analysis, POCs, and references for each vulnerability.

This page details vulnerability aggregation for the vendor RRWO, focusing on a broad spectrum of software and hardware weaknesses tagged under general product security. The content collected here encompasses multiple years of reported security issues, ranging from early disclosures in the mid-2010s to recent findings in 2024, providing a comprehensive historical view of the vendor's security landscape. On this page, you can track a vendor's advisories over time to identify patterns in fix responsiveness and recurring design flaws. You can also understand specific weakness classes such as buffer overflows, injection flaws, or authentication bypasses by examining how they manifest within RRWO’s ecosystem. Furthermore, the aggregated data allows you to look up a product's vulnerability history, helping security professionals assess risk exposure and prioritize patching efforts based on actual incident data rather than theoretical models. By centralizing this information, the resource supports informed decision-making for both enterprise security teams and individual researchers who need accurate, chronological context when evaluating the overall security posture of RRWO products. This structured approach ensures that all relevant CVE entries are easily accessible for deeper technical analysis and comparative studies across different vendors in the same industry sector.

CVE ID Title CVSS Severity Published
CVE-2026-19566 Net::CIDR::Set versions before 0.23 for Perl allow memory exhaustion and malformed set ranges via unbounded IPv6 prefix lengths — Net::CIDR::Set CWE-1284 - - 2026-08-12
CVE-2026-17435 File::Rotate::Simple versions before 0.4.0 for Perl create the target of dangling symlinks when rotating files — File::Rotate::Simple CWE-59 - - 2026-08-07
CVE-2026-18536 Data::Entropy versions before 0.010 for Perl read remote entropy sources over plain HTTP — Data::Entropy CWE-319 - - 2026-08-01
CVE-2026-17552 Plack::App::Prerender versions before 0.3.0 for Perl can proxy to an arbitrary host via unvalidated REQUEST_URI concatenation in call — Plack::App::Prerender CWE-918 - - 2026-07-27
CVE-2026-16766 Catalyst::View::Wkhtmltopdf versions before 0.6.1 for Perl allow shell command injection (RCE) via PDF render options — Catalyst::View::Wkhtmltopdf CWE-78 - - 2026-07-25
CVE-2026-49942 Net::CIDR::Set versions through 0.20 for Perl did not validate network masks — Net::CIDR::Set CWE-1289 - - 2026-06-04
CVE-2026-49941 Net::CIDR::Set versions through 0.20 for Perl did not validate IP addresses — Net::CIDR::Set CWE-1287 - - 2026-06-04
CVE-2026-49940 Net::CIDR::Set versions through 0.20 for Perl accept non-ASCII IP addresses and netmasks — Net::CIDR::Set CWE-1289 - - 2026-06-04
CVE-2026-9658 Plack::Middleware::Security::Common versions before 0.13.1 for Perl did not block header injections in request paths — Plack::Middleware::Security::Common CWE-790 - - 2026-05-28
CVE-2026-46740 Mojolicious::Plugin::Statsd versions through 0.04 for Perl allowed metric injections — Mojolicious::Plugin::Statsd CWE-93 - - 2026-05-26
CVE-2026-47372 Crypt::SaltedHash versions through 0.09 for Perl generate insecure random values for salts — Crypt::SaltedHash CWE-338 - - 2026-05-20
CVE-2026-47373 Crypt::SaltedHash versions through 0.09 for Perl is susceptible to timing attacks — Crypt::SaltedHash CWE-208 - - 2026-05-20
CVE-2026-8788 Net::Statsd::Lite versions through 0.10.0 for Perl allowed metric injections — Net::Statsd::Lite CWE-93 - - 2026-05-18
CVE-2026-46720 Net::Statsd::Tiny versions before 0.3.8 for Perl allowed metric injections — Net::Statsd::Tiny CWE-93 - - 2026-05-17
CVE-2026-46719 Net::Statsd::Lite versions before 0.9.0 for Perl allowed metric injections — Net::Statsd::Lite CWE-93 - - 2026-05-16
CVE-2026-45180 Catalyst::Plugin::Statsd versions through 0.10.0 for Perl may leak session ids — Catalyst::Plugin::Statsd CWE-319 7.5 - 2026-05-10
CVE-2026-45179 Plack::Middleware::Statsd versions before 0.9.0 for Perl may leak user IP addresses — Plack::Middleware::Statsd CWE-319 5.3 - 2026-05-10
CVE-2026-7040 Text::Minify::XS versions from 0.3.0 before 0.7.8 for Perl have heap overflow when processing some malformed UTF-8 characters — Text::Minify::XS CWE-176 9.8AI Critical AI 2026-04-27
CVE-2025-40911 Net::CIDR::Set versions 0.10 through 0.13 for Perl does not properly consider leading zero characters in IP CIDR address strings, which could allow attackers to bypass access control that is based on IP addresses — Net::CIDR::Set CWE-1287 9.1AI Critical AI 2025-05-27
CVE-2025-3051 Linux::Statm::Tiny for Perl allows untrusted code to be included from the current working directory — Linux::Statm::Tiny CWE-427 8.8 - 2025-04-01

This page lists every published CVE security advisory associated with RRWO. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.