Known Vulnerabilities for Plack by Plack Project
Listed below are 1 of the newest known vulnerabilities associated with "Plack" by "Plack Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-45179 json | Plack::Middleware::Statsd versions before 0.9.0 for Perl may leak user IP addresses. If the communication channel to the sta... | Not Provided | 2026-05-10 | 2026-05-12 |
| CVE-2026-12740 json | Plack::Middleware::OAuth versions through 0.10 for Perl do not support the OAuth 2.0 state parameter. RequestTokenV2 builds ... | Not Provided | 2026-07-04 | 2026-07-06 |
| CVE-2026-9658 json | Plack::Middleware::Security::Common versions before 0.13.1 for Perl did not block header injections in request paths. The he... | Not Provided | 2026-05-28 | 2026-06-01 |
| CVE-2026-7381 json | Plack::Middleware::XSendfile versions through 1.0053 for Perl can allow client-controlled path rewriting. Plack::Middleware:... | Not Provided | 2026-04-29 | 2026-04-30 |
| CVE-2014-5269 json | Not Provided | 2014-09-04 | 2026-05-06 |