Advisories ยป MGASA-2026-0360

Updated perl-HTML-FormHandler packages fix a security vulnerability

Publication date: 01 Sep 2026
Modification date: 01 Sep 2026
Type: security
Affected Mageia releases : 10 , 9
CVE: CVE-2022-4993

Description

HTML::FormHandler versions through 0.40068 for Perl allow attacker
selected method dispatch and resource exhaustion because _apply_actions
and add_error use error message text built from request data as a
Locale::Maketext bracket notation template
                

References

SRPMS

10/core

9/core