Hacker News new | ask | show | jobs
by Mithaldu 3464 days ago
No, the vulns were in software that used CGI.pm and used it naive ways. CGI.pm had a design decision in its API, that can lead to, but does not constitute a vulnerability, and is a feature to those using it appropiately.