CVE-2025-40914: Mik Cryptx

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Perl CryptX before version 0.087 contains a dependency that may be susceptible to an integer overflow. CryptX embeds a version of the libtommath library that is susceptible to an integer overflow associated with CVE-2023-36328.

Affected products

  • Mik Cryptx: from 0.002, up to and including 0.086

Published 2025-06-11. Last modified 2026-06-17.