Security Advisories / CPANSA-SVG-Sparkline-2017-01

2017-05-15

Severity

Low

Source

CPAN

Package

SVG-Sparkline

Description

Invalid data input validation makes it possible to pass arbitrary strings to module loading eval.

Affected versions and fixes

Affected versions: <1.12

Fixed in: >=1.12

References