Security Advisory

CVE-2026-7040

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-04-27 12:29:53
Last updated 2026-05-01 16:03:02
Assigner CPANSec
CVSS score not scored
State PUBLISHED

Description

Text::Minify::XS versions from 0.3.0 before 0.7.8 for Perl have a heap overflow when processing some malformed UTF-8 characters. The minify functions mishandled some malformed UTF-8 characters, leading to heap corruption. Note that the minify_utf8 function is an alias for minify.