It has been reported that CPAN WWW::Form may be prone to a HTML injection vulnerability that may allow a remote attacker to execute HTML and script code in a user's browser. The problem is reported to exist due to improper sanitizing of user-supplied data. CPAN WWW::Form versions 1.12 and prior have been reported to be vulnerable to this issue.
It has been reported that CPAN WWW::Form may be prone to a HTML injection vulnerability that may allow a remote attacker to execute HTML and script code in a user's browser. The problem is reported to exist due to improper sanitizing of user-supplied data. CPAN WWW::Form versions 1.12 and prior have been reported to be vulnerable to this issue.