Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

curl — Vulnerabilities & Security Advisories 47

Browse all 47 CVE security advisories affecting curl. AI-powered Chinese analysis, POCs, and references for each vulnerability.

CURL is a widely utilized command-line tool and library for transferring data with URL syntax, supporting protocols like HTTP, HTTPS, and FTP. Its ubiquity in automation scripts and embedded systems makes it a frequent target for attackers seeking initial access or data exfiltration. Historically, vulnerabilities in the software have predominantly involved buffer overflows, integer overflows, and improper input validation, leading to potential remote code execution or denial-of-service conditions. While cross-site scripting is less relevant due to its non-browser nature, privilege escalation risks arise when executed with elevated permissions. Notable incidents include critical flaws allowing attackers to bypass security checks or execute arbitrary commands through crafted URLs. With 39 recorded CVEs, maintaining updated versions is essential to mitigate these persistent risks associated with its extensive protocol support and deep integration into global infrastructure.

Found 47 results / 47Clear Filters
Top products by curl: curl
LowCVE-2026-48732026-05-22
curl CVE-2026-4873 TLS连接池复用漏洞
MediumCVE-2026-55452026-05-22
libcurl 身份验证绕过漏洞 (CVE-2026-5545) 详情
MediumCVE-2026-62532026-05-22
curl - proxy credentials leak over redirect-to proxy - CVE-2026-6253
LowCVE-2026-57732026-05-22
libcurl CVE-2026-5773 SMB连接重用漏洞公告
LowCVE-2026-62762026-05-22
curl - stale custom cookie host causes cookie leak - CVE-2026-6276
MediumCVE-2026-62532026-05-22
curl 代理凭据泄露漏洞 CVE-2026-6253 公告
LowCVE-2026-62762026-05-22
漏洞公告:curl CVE-2026-6276 Cookie泄露漏洞
MediumCVE-2026-64292026-05-22
libcurl 重定向密码泄露漏洞 (CVE-2026-6429) 分析
MediumCVE-2026-70092026-05-22
curl - OCSP stapling bypass with Apple SecTrust - CVE-2026-7009
MediumCVE-2026-71682026-05-22
curl - cross-proxy Digest auth state leak - CVE-2026-7168
MediumCVE-2026-71682026-05-22
curl: 代理认证绕过漏洞 (CVE-2026-7168) 影响范围与修复
MediumCVE-2023-382782026-04-04
feat(worker): rate limiting and lockouts in auth flow · Budibase/budibase@21bc3f8 · GitHub
LowCVE-2025-109662025-11-09
curl wolfSSH后端SFTP主机验证缺失漏洞(CVE-2025-10966)
LowCVE-2025-101482025-09-13
curl CVE-2025-10148 WebSocket固定掩码漏洞分析
MediumCVE-2025-50252025-05-29
curl - No QUIC certificate pinning with wolfSSL - CVE-2025-5025
MediumCVE-2025-49472025-05-29
curl CVE-2025-4947 QUIC证书验证绕过漏洞
MediumCVE-2025-50252025-05-29
curl wolfSSL QUIC证书固定缺失漏洞(CVE-2025-5025)
LowCVE-2024-96812024-11-09
curl CVE-2024-9681 HSTS子域名缓存覆盖漏洞
LowCVE-2024-96812024-11-09
curl - HSTS subdomain overwrites parent cache entry - CVE-2024-9681
MediumCVE-2024-80962024-09-12
curl CVE-2024-8096 OCSP stapling证书验证绕过漏洞

Showing up to 20 recent security advisories. View all →

This page lists every published CVE security advisory associated with curl. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.