CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-60081

highCVSS 7.5covered by 2 sourcesfirst seen 2026-07-14
DBI::ProfileData versions before 1.651 for Perl do not limit the path index. The path index column of profile dump files is used to allocate an array of data for the parser. An unbounded value allows an attacker to specify a large index and consume available memory.

CSIRTS triage

What
DBI::ProfileData versions before 1.651 do not limit the path index.
Who is affected
Users of DBI::ProfileData versions prior to 1.651 are affected.
Urgency
This is a high urgency issue due to its high severity and potential for exploitation.
Action
Upgrade to DBI::ProfileData version 1.651 or later.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-60081

Get an email if CVE-2026-60081 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (2)

External references

NVD record for CVE-2026-60081

CVE.org record

Embed the live status

CVE-2026-60081 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-60081 status](https://www.csirts.com/badge/CVE-2026-60081)](https://www.csirts.com/cve/CVE-2026-60081)