Description
UnQLite versions through 0.06 for Perl uses a potentially insecure version of the UnQLite library. UnQLite for Perl embeds the UnQLite library. Version 0.06 and earlier of the Perl module uses a version of the library from 2014 that may be vulnerable to a heap-based overflow.
Problem types
CWE-1395 Dependency on Vulnerable Third-Party Component
Product status
Any version
References
metacpan.org/release/TOKUHIROM/UnQLite-0.07/source/Changes
www.cve.org/CVERecord?id=CVE-2025-3791