Description:
HTTP::Tiny versions before 0.093 for Perl do not validate CRLF in HTTP
request lines or control field header values. (CVE-2026-7010)
- https://bugs.mageia.org/show_bug.cgi?id=35521
- https://www.openwall.com/lists/oss-security/2026/05/11/17
- https://metacpan.org/release/HAARG/HTTP-Tiny-0.093-TRIAL/changes
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-7010
- 9/core/perl-HTTP-Tiny-0.82.0-1.2.mga9
Get the latest Linux and open source security news straight to your inbox.