VDB

GCVE-110-MAGEIA-2026-283

GCVE-110-MAGEIA-2026-283
Advisory Published
Vulnetix · Advisory published July 20, 2026
The updated package fixes security vulnerabilities: JavaScript::Minifier::XS versions before 0.16 for Perl crash with a NULL pointer dereference when the first meaningful token of the input is a slash. (CVE-2026-56017) JavaScript::Minifier::XS versions before 0.16 for Perl leak memory on every call to minify(), allowing unbounded memory growth. (CVE-2026-56018)

Affected Products

VendorProductVersionsPlatforms
Mageiaperl-JavaScript-Minifier-XS0 (affected), 0.160.0-1.mga9 (unaffected)
Mageiaperl-JavaScript-Minifier-XS0 (affected), 0.160.0-1.mga10 (unaffected)

Browse GCVE Records

68,083 records in the GCVE database · Updated August 18, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›