Security Advisory

CVE-2011-10043

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-07 11:46:13
Last updated 2026-07-07 16:04:29
Assigner CPANSec
CVSS score not scored
State PUBLISHED

Description

Module::Load versions before 0.22 for Perl allow arbitrary modules outside of @INC to be loaded. Module names starting with "::" could be passed to the load function to specify arbitrary module paths. Attackers able to influence module names passed to load could use that bug to execute arbitrary code.