CURL_jll
JLSEC-2026-1222High 7.4UpstreamWhen a libcurl-based application performs transfers via `SCP://` or `SFTP://` and utilize…JLSEC-2026-1221High 7.5UpstreamA vulnerability in libcurl caused the HTTP `Referer:` header to persist even when explici…JLSEC-2026-1220High 7.5UpstreamIn this scenario, libcurl first uses a proper HTTP/3 server for the initial transfers, an…JLSEC-2026-1219High 7.3UpstreamCalling `curl_easy_pause()` within the event-based `CURLMOPT_SOCKETFUNCTION` callback tri…JLSEC-2026-1218Critical 9.8Upstreamlibcurl had a flaw that when instructed to clear proxy authentication credentials which m…JLSEC-2026-1217High 7.5Upstreamlibcurl would reuse a previously created connection even when some mTLS config related op…JLSEC-2026-1216Critical 9.1UpstreamWhen reusing a libcurl handle for sequential transfers driven by environment-variable pro…JLSEC-2026-1215Critical 9.1UpstreamWhen asking curl to use a `.netrc` file to find credentials and at the same time specifyi…JLSEC-2026-1214Critical 9.8UpstreamThe curl logic that works with SASL authentication could end up cleaning up the GSASL con…JLSEC-2026-1213Critical 9.1UpstreamA flaw in curl’s cookie parsing logic allows a malicious HTTP server to set 'super cook…JLSEC-2026-1212Medium 6.5Upstreamlibcurl might in some circumstances reuse the wrong connection when asked to do Negotiate…JLSEC-2026-1211High 8.1UpstreamA vulnerability exists where a new transfer that uses STARTTLS to upgrade the connection …JLSEC-2026-1202High 7.5UpstreamWhen a user invokes curl using a schemeless URL combined with `--proto-default` sftp (or …JLSEC-2026-1201Critical 9.8UpstreamSuccessfully using libcurl to do a transfer to a specific HTTP origin (`hostA`) with **Di…JLSEC-2026-1200High 7.5UpstreamBy default, curl automatically responds to WebSocket PING frames. Because curl lacks an u…JLSEC-2026-1199Critical 9.1Upstreamlibcurl keeps previously used connections in a connection pool for subsequent transfers t…JLSEC-2026-1198High 7.5UpstreamAn issue in curl’s QUIC UDP receive function allows a malicious HTTP/3 server to trigge…JLSEC-2026-1197Critical 9.8UpstreamA use-after-free vulnerability exists in libcurl when an application configures an HTTP/2…JLSEC-2026-1210Medium 5.3UpstreamSuccessfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **…JLSEC-2026-1209Medium 5.3UpstreamWhen curl is told to use the Certificate Status Request TLS extension, often referred to …JLSEC-2026-1208Medium 5.3UpstreamWhen asked to both use a `.netrc` file for credentials and to follow HTTP redirects, libc…JLSEC-2026-1207High 7.5UpstreamUsing libcurl, when a custom `Host:` header is first set for an HTTP request and a second…JLSEC-2026-1206Medium 5.9UpstreamNo summary availableJLSEC-2026-1205High 7.5Upstreamlibcurl might in some circumstances reuse the wrong connection for SMB(S) transfers. libc…JLSEC-2026-1204Medium 6.5Upstreamlibcurl might in some circumstances reuse the wrong connection when asked to do an authen…JLSEC-2026-1203Medium 5.9UpstreamA vulnerability exists where a connection requiring TLS incorrectly reuses an existing...JLSEC-2026-439High 7.5UpstreamWhen doing a second SMB request to the same host again, curl would wrongly use a data poi…JLSEC-2026-438Medium 6.5Upstreamcurl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, eve…JLSEC-2026-437Medium 5.3UpstreamWhen an OAuth2 bearer token is used for an HTTP(S) transfer, and that transfer performs a…JLSEC-2026-436Medium 6.5UpstreamNo summary availableJLSEC-2026-425Medium 4.6UpstreamURLs containing percent-encoded slashes (`/` or `\ `) can trick wcurl into saving the out…JLSEC-2026-431Low 3.1UpstreamWhen doing SSH-based transfers using either SCP or SFTP, and asked to do public key authe…JLSEC-2026-430Medium 5.3UpstreamWhen doing SSH-based transfers using either SCP or SFTP, and setting the `known_hosts` fi…JLSEC-2026-429Medium 5.3UpstreamWhen doing TLS related transfers with reused easy or multi handles and altering the...JLSEC-2026-428Medium 5.3UpstreamWhen an OAuth2 bearer token is used for an HTTP(S) transfer, and that transfer performs a…JLSEC-2026-427Medium 6.3UpstreamWhen doing multi-threaded LDAPS transfers (LDAP over TLS) with libcurl, changing TLS opti…JLSEC-2026-426Medium 5.9UpstreamWhen using `CURLOPT_PINNEDPUBLICKEY` option with libcurl or `--pinnedpubkey` with the cur…JLSEC-2026-424Medium 4.3Upstreamcurl's code for managing SSH connections when SFTP was done using the wolfSSH powered bac…JLSEC-2026-435High 7.5Upstream1JLSEC-2026-423Medium 5.3Upstreamcurl's websocket code did not update the 32 bit mask pattern for each new outgoing frame …JLSEC-2026-434High 7.5UpstreamDue to a mistake in libcurl's WebSocket code, a malicious server can send a particularly …JLSEC-2026-433Medium 4.8Upstreamlibcurl supports *pinning* of the server certificate public key for HTTPS transfersJLSEC-2026-432Medium 6.5Upstreamlibcurl accidentally skips the certificate verification for QUIC connections when connect…JLSEC-2026-422High 7.3UpstreamWhen libcurl is asked to perform automatic gzip decompression of content-encoded HTTP res…JLSEC-2026-421High 7.0Upstreamlibcurl would wrongly close the same eventfd file descriptor twice when taking down a con…JLSEC-2026-420Low 3.4UpstreamWhen asked to use a `.netrc` file for credentials **and** to follow HTTP redirects, curl …JLSEC-2026-413Low 3.4UpstreamWhen asked to both use a `.netrc` file for credentials and to follow HTTP redirects, curl…JLSEC-2026-419Medium 6.5UpstreamWhen curl is asked to use HSTS, the expiry time for a subdomain might overwrite a parent …JLSEC-2026-418Medium 6.5UpstreamWhen curl is told to use the Certificate Status Request TLS extension, often referred to …JLSEC-2025-38Medium 6.5Upstreamlibcurl's ASN1 parser code has the `GTime2str()` function, used for parsing an ASN.1 Gene…JLSEC-2025-36High 7.5Upstreamlibcurl's ASN1 parser has this utf8asn1str() function used for parsing an ASN.1 UTF-8 str…JLSEC-2026-417Medium 6.5Upstreamlibcurl did not check the server certificate of TLS connections done to a host specified …JLSEC-2026-416High 8.6UpstreamWhen an application tells libcurl it wants to allow HTTP/2 server push, and the amount of…JLSEC-2026-415Medium 6.3Upstreamlibcurl skips the certificate verification for a QUIC connection under certain conditions…JLSEC-2026-414Low 3.5UpstreamWhen a protocol selection parameter option disables all protocols without adding any then…JLSEC-2026-412Medium 5.3Upstreamcurl inadvertently kept the SSL session ID for connections in its cache even when the ver…JLSEC-2026-411Medium 6.5UpstreamThis flaw allows a malicious HTTP server to set "super cookies" in curl that are then pas…JLSEC-2025-35Low 3.7UpstreamThis flaw allows an attacker to insert cookies at will into a running program using libcu…JLSEC-2025-34Critical 9.8UpstreamThis flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake.JLSEC-2026-410Low 3.7UpstreamNo summary availableJLSEC-2026-409Medium 5.9UpstreamNo summary availableJLSEC-2026-408Medium 5.9UpstreamNo summary availableJLSEC-2026-407High 7.5UpstreamNo summary availableJLSEC-2025-33Medium 5.5UpstreamAn authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses …JLSEC-2025-30Medium 5.9UpstreamAn authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feat…JLSEC-2025-31Medium 5.9UpstreamAn authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reu…JLSEC-2026-406High 8.8UpstreamNo summary availableJLSEC-2026-405High 8.8UpstreamNo summary availableJLSEC-2026-404Medium 6.5UpstreamNo summary availableJLSEC-2026-403Medium 6.5UpstreamNo summary availableJLSEC-2026-402Critical 9.1UpstreamNo summary availableJLSEC-2026-401Medium 5.9UpstreamNo summary availableJLSEC-2026-400High 7.5UpstreamNo summary availableJLSEC-2026-396Critical 9.8UpstreamNo summary availableJLSEC-2026-398High 8.1UpstreamNo summary availableJLSEC-2026-399High 7.5UpstreamNo summary availableJLSEC-2026-397Low 3.7UpstreamNo summary availableJLSEC-2026-395Medium 5.9UpstreamNo summary availableJLSEC-2026-394Critical 9.8UpstreamNo summary availableJLSEC-2026-393Medium 6.5UpstreamNo summary availableJLSEC-2026-392Medium 4.3UpstreamNo summary availableJLSEC-2026-391High 7.5UpstreamNo summary availableJLSEC-2026-390High 7.5UpstreamNo summary availableJLSEC-2026-389High 7.5UpstreamNo summary availableJLSEC-2026-388Medium 6.5UpstreamNo summary availableJLSEC-2026-387High 7.5UpstreamNo summary availableJLSEC-2026-386Medium 5.7UpstreamNo summary availableJLSEC-2026-385High 8.1UpstreamNo summary available