LeakyCreds
NewInstant webhook alerts now available — notified within seconds of any credential detection.Learn more →

CVE-2026-3381 - Vulnerability Analysis

CriticalCVSS: 9.8

Last Updated: March 5, 2026

Compress::Raw::Zlib - Insecure Library Version

Published: March 5, 2026Updated: March 5, 2026Remote Exploitable

Overview

Compress::Raw::Zlib <= 2.219 for Perl contains insecure zlib versions due to outdated bundled zlib library, letting attackers potentially exploit vulnerabilities fixed in zlib 1.3.2, exploit requires vulnerable version usage.

Severity & Score

Severity: Critical
CVSS Score: 9.8

Impact

Attackers can exploit vulnerabilities in outdated zlib to cause potential memory corruption or denial of service.

Mitigation

Update to version 2.220 or later which includes zlib 1.3.2.

Details

CVE ID
CVE-2026-3381
Severity
Critical
CVSS Score
9.8
Type
undefined
Status
unconfirmed

CVSS Metrics

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H