CVE-2023-27537
- EPSS 0.11%
- Published 30.03.2023 20:15:07
- Last modified 21.11.2024 07:53:07
A double free vulnerability exists in libcurl <8.0.0 when sharing HSTS data between separate "handles". This sharing was introduced without considerations for do this sharing across separate threads but there was no indication of this fact in the doc...
CVE-2023-27538
- EPSS 0.01%
- Published 30.03.2023 20:15:07
- Last modified 09.06.2025 15:15:29
An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connection despite the fact that an SSH option was modified, which should have prevented reuse. libcurl maintains a pool of previous...
CVE-2023-23914
- EPSS 0.18%
- Published 23.02.2023 20:15:13
- Last modified 12.03.2025 19:15:35
A cleartext transmission of sensitive information vulnerability exists in curl <v7.88.0 that could cause HSTS functionality fail when multiple URLs are requested serially. Using its HSTS support, curl can be instructed to use HTTPS instead of usingan...
CVE-2023-23915
- EPSS 0.05%
- Published 23.02.2023 20:15:13
- Last modified 21.11.2024 07:47:05
A cleartext transmission of sensitive information vulnerability exists in curl <v7.88.0 that could cause HSTS functionality to behave incorrectly when multiple URLs are requested in parallel. Using its HSTS support, curl can be instructed to use HTTP...
CVE-2023-23916
- EPSS 0.06%
- Published 23.02.2023 20:15:13
- Last modified 12.03.2025 19:15:36
An allocation of resources without limits or throttling vulnerability exists in curl <v7.88.0 based on the "chained" HTTP compression algorithms, meaning that a server response can be compressed multiple times and potentially with differentalgorithms...
CVE-2022-32221
- EPSS 1.2%
- Published 05.12.2022 22:15:10
- Last modified 21.11.2024 07:05:57
When doing HTTP(S) transfers, libcurl might erroneously use the read callback (`CURLOPT_READFUNCTION`) to ask for data to send, even when the `CURLOPT_POSTFIELDS` option has been set, if the same handle previously was used to issue a `PUT` request wh...
CVE-2022-35260
- EPSS 0.16%
- Published 05.12.2022 22:15:10
- Last modified 21.11.2024 07:10:59
curl can be told to parse a `.netrc` file for credentials. If that file endsin a line with 4095 consecutive non-white space letters and no newline, curlwould first read past the end of the stack-based buffer, and if the readworks, write a zero byte b...
CVE-2022-40304
- EPSS 0.11%
- Published 23.11.2022 18:15:12
- Last modified 28.04.2025 20:15:19
An issue was discovered in libxml2 before 2.10.3. Certain invalid XML entity definitions can corrupt a hash table key, potentially leading to subsequent logic errors. In one case, a double-free can be provoked.
CVE-2022-40303
- EPSS 0.26%
- Published 23.11.2022 00:15:11
- Last modified 29.04.2025 05:15:43
An issue was discovered in libxml2 before 2.10.3. When parsing a multi-gigabyte XML document with the XML_PARSE_HUGE parser option enabled, several integer counters can overflow. This results in an attempt to access an array at a negative 2GB offset,...
CVE-2022-3602
- EPSS 85.38%
- Published 01.11.2022 18:15:10
- Last modified 05.05.2025 16:15:19
A buffer overrun can be triggered in X.509 certificate verification, specifically in name constraint checking. Note that this occurs after certificate chain signature verification and requires either a CA to have signed the malicious certificate or f...