Known Vulnerabilities for Mojo by Mojolicious
Listed below are 6 of the newest known vulnerabilities associated with "Mojo" by "Mojolicious".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-68914 json | Mojolicious is a real-time web framework for Perl. Prior to 9.47, the pure-Perl implementation of Mojo::JSON does not limit n... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-14803 json | Mojo::JSON versions before 9.47 for Perl allow memory exhaustion via unbounded recursion in the pure-Perl decoder. The pure-... | Not Provided | 2026-07-06 | 2026-07-06 |
| CVE-2026-14109 json | Insufficient policy enforcement in Mojo in Google Chrome prior to 150.0.7871.47 allowed a remote attacker who had compromised... | Not Provided | 2026-06-30 | 2026-07-01 |
| CVE-2026-13502 json | A flaw has been found in antlr ANTLR4 up to 4.13.2. This affects the function ObjectInputStream.readObject of the file antlr4... | Not Provided | 2026-06-28 | 2026-06-29 |
| CVE-2026-13281 json | Integer overflow in Mojo in Google Chrome prior to 149.0.7827.201 allowed a remote attacker who had compromised the renderer ... | Not Provided | 2026-06-25 | 2026-06-27 |
| CVE-2026-9537 json | Mojo::JWT versions before 1.02 for Perl verify HMAC signatures with a non-constant-time string comparison. The decode() meth... | Not Provided | 2026-07-17 | 2026-07-20 |