Security Advisories (1)
CVE-2025-30673 (2025-04-01)

Sub::HandlesVia for Perl before 0.050002 allows untrusted code from the current working directory ('.') to be loaded similar to CVE-2016-1238. If an attacker can place a malicious file in current working directory, it may be loaded instead of the intended file, potentially leading to arbitrary code execution. Sub::HandlesVia uses Mite to produce the affected code section due to CVE-2025-30672

Changes for version 0.016 - 2020-09-20

  • Bug Fixes
    • Fix load order issue where handles_via is used in a Moo::Role when Moo.pm isn't loaded yet.

Modules

alternative handles_via implementation
integration with OO frameworks for Sub::HandlesVia

Provides

in lib/Sub/HandlesVia/Handler.pm
in lib/Sub/HandlesVia/Handler.pm
in lib/Sub/HandlesVia/Handler.pm
in lib/Sub/HandlesVia/HandlerLibrary.pm
in lib/Sub/HandlesVia/HandlerLibrary/Array.pm
in lib/Sub/HandlesVia/HandlerLibrary/Bool.pm
in lib/Sub/HandlesVia/HandlerLibrary/Code.pm
in lib/Sub/HandlesVia/HandlerLibrary/Counter.pm
in lib/Sub/HandlesVia/HandlerLibrary/Hash.pm
in lib/Sub/HandlesVia/HandlerLibrary/Number.pm
in lib/Sub/HandlesVia/HandlerLibrary/Scalar.pm
in lib/Sub/HandlesVia/HandlerLibrary/String.pm
in lib/Sub/HandlesVia/Toolkit/Moo.pm
in lib/Sub/HandlesVia/Toolkit/Moose.pm
in lib/Sub/HandlesVia/Toolkit/Moose.pm
in lib/Sub/HandlesVia/Toolkit/Moose.pm
in lib/Sub/HandlesVia/Toolkit/Mouse.pm
in lib/Sub/HandlesVia/Toolkit/Mouse.pm
in lib/Sub/HandlesVia/Toolkit/Mouse.pm
in lib/Sub/HandlesVia/Toolkit/Plain.pm