SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-3031

CRITICAL · CVSS 9.8 EPSS 0.40%

Source: NVD + CISA KEV + EPSS · Published 2026-07-16 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

The Image::EPEG module for Perl is vulnerable due to its inclusion of an outdated and unsupported version of the Epeg library, specifically version 0.9.0, which has not been updated since 2004. This critical vulnerability could lead to severe security risks, including potential exploitation through malicious JPEG files. Organizations using Image::EPEG should prioritize immediate remediation to mitigate the risk of attacks leveraging this outdated library.

CVE
CVE-2026-3031
Severity
CRITICAL
CVSS
9.8
EPSS
0.40%

Original NVD Description

Image::EPEG versions through 0.15 for Perl embeds an unsupported version of the Epeg library. Image::EPEG includes Epeg 0.9.0 that was last updated in 2004. Epeg is a fast JPEG thumbnail library that was once part of the Englightenment Project.