


Perceptive Security
SOC/SIEM Consultancy

UnQLite versions through 0.06 for Perl uses a potentially insecure version of the UnQLite library.
UnQLite for Perl embeds the UnQLite library. Version 0.06 a…
Published:
4 March 2026 at 23:00:00
Alert date:
5 March 2026 at 20:09:02
Source:
nvd.nist.gov
Supply Chain & Dependencies, Database & Storage
CVE-2026-3257 affects UnQLite versions through 0.06 for Perl, which uses a potentially insecure version of the UnQLite library from 2014. The Perl module embeds the UnQLite library and versions 0.06 and earlier may be vulnerable to a heap-based overflow. This vulnerability is related to the use of an outdated underlying library component that contains security flaws. Organizations using UnQLite for Perl should update to version 0.07 or later to address this issue.
Technical details
Mitigation steps:
Affected products:
UnQLite for Perl
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-3257
https://metacpan.org/release/TOKUHIROM/UnQLite-0.07/source/Changes
https://unqlite.symisc.net/
https://www.cve.org/CVERecord?id=CVE-2025-3791
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
