{"schema_version":1,"title":"Haxx Libcurl vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 21 vulnerabilities in Haxx Libcurl: 0 in the last 7 days and 10 in the last 90 days, 2 of them critical and 0 exploited in the wild. The most recent, CVE-2026-82208, was published on 6 September 2026.","url":"https://junglewise.ai/threats/technologies/libcurl","json_url":"https://junglewise.ai/threats/technologies/libcurl.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/libcurl","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":3,"all_time":21,"critical":2,"exploited":0,"last_7_days":0,"last_30_days":2,"last_90_days":10,"last_365_days":18},"latest":[{"cve":"CVE-2026-82208","cvss":7.5,"epss":0.0041,"slug":"cve-2026-82208-curl-libcurl-certificate-validation-bypass-in-wolfssl-backend","title":"curl libcurl certificate validation bypass in wolfSSL backend","severity":"high","exploited":false,"published_at":"2026-09-06T18:17:22.733+00:00","url":"https://junglewise.ai/threats/cve-2026-82208-curl-libcurl-certificate-validation-bypass-in-wolfssl-backend"},{"cve":"CVE-2026-18924","cvss":9.1,"epss":0.0058,"slug":"cve-2026-18924-curl-libcurl-http-2-server-push-use-after-free","title":"curl libcurl HTTP/2 server push use-after-free","severity":"critical","exploited":false,"published_at":"2026-09-06T18:17:20.553+00:00","url":"https://junglewise.ai/threats/cve-2026-18924-curl-libcurl-http-2-server-push-use-after-free"},{"cve":"CVE-2026-8932","slug":"cve-2026-8932-curl-libcurl-authentication-bypass-via-improper-mtls-connection","title":"curl libcurl authentication bypass via improper mTLS connection reuse","severity":"info","exploited":false,"published_at":"2026-07-03T07:16:25.363+00:00","url":"https://junglewise.ai/threats/cve-2026-8932-curl-libcurl-authentication-bypass-via-improper-mtls-connection"},{"cve":"CVE-2026-8927","slug":"cve-2026-8927-curl-libcurl-authentication-state-leak-in-proxy-handle-reuse","title":"curl libcurl authentication state leak in proxy handle reuse","severity":"info","exploited":false,"published_at":"2026-07-03T07:16:25.123+00:00","url":"https://junglewise.ai/threats/cve-2026-8927-curl-libcurl-authentication-state-leak-in-proxy-handle-reuse"},{"cve":"CVE-2026-8926","slug":"cve-2026-8926-curl-password-leak-in-netrc-credential-lookup","title":"curl password leak in .netrc credential lookup","severity":"info","exploited":false,"published_at":"2026-07-03T07:16:25.037+00:00","url":"https://junglewise.ai/threats/cve-2026-8926-curl-password-leak-in-netrc-credential-lookup"},{"cve":"CVE-2026-8924","cvss":0,"slug":"cve-2026-8924-curl-cookie-parsing-bypass-via-trailing-dot-hostname","title":"curl cookie parsing bypass via trailing dot hostname","severity":"info","exploited":false,"published_at":"2026-07-03T07:16:24.793+00:00","url":"https://junglewise.ai/threats/cve-2026-8924-curl-cookie-parsing-bypass-via-trailing-dot-hostname"},{"cve":"CVE-2026-8458","cvss":0,"slug":"cve-2026-8458-curl-libcurl-incorrect-connection-reuse-for-negotiate-services","title":"curl libcurl incorrect connection reuse for Negotiate services","severity":"info","exploited":false,"published_at":"2026-07-03T07:16:24.63+00:00","url":"https://junglewise.ai/threats/cve-2026-8458-curl-libcurl-incorrect-connection-reuse-for-negotiate-services"},{"cve":"CVE-2026-8286","slug":"cve-2026-8286-curl-wrong-starttls-connection-reuse","title":"curl wrong STARTTLS connection reuse","severity":"info","exploited":false,"published_at":"2026-07-03T07:16:24.453+00:00","url":"https://junglewise.ai/threats/cve-2026-8286-curl-wrong-starttls-connection-reuse"},{"cve":"CVE-2026-11352","cvss":0,"slug":"cve-2026-11352-curl-quic-infinite-loop-in-udp-receive-function","title":"curl QUIC infinite loop in UDP receive function","severity":"info","exploited":false,"published_at":"2026-07-03T07:16:23.693+00:00","url":"https://junglewise.ai/threats/cve-2026-11352-curl-quic-infinite-loop-in-udp-receive-function"},{"cve":"CVE-2026-10536","cvss":3.3,"slug":"cve-2026-10536-curl-libcurl-use-after-free-in-http-2-stream-dependency-tree","title":"curl libcurl use-after-free in HTTP/2 stream-dependency tree","severity":"info","exploited":false,"published_at":"2026-07-03T07:16:23.563+00:00","url":"https://junglewise.ai/threats/cve-2026-10536-curl-libcurl-use-after-free-in-http-2-stream-dependency-tree"},{"cve":"CVE-2026-7168","cvss":5.3,"epss":0.0059,"slug":"cve-2026-7168-curl-libcurl-digest-auth-state-leak-when-changing-proxies","title":"Successfully using libcurl to do a transfer over a specific HTTP proxy\n(`proxyA`) with **Digest** authentication and then changing the proxy","severity":"medium","exploited":false,"published_at":"2026-05-13T13:01:57.2+00:00","url":"https://junglewise.ai/threats/cve-2026-7168-curl-libcurl-digest-auth-state-leak-when-changing-proxies"},{"cve":"CVE-2026-7009","cvss":5.3,"slug":"cve-2026-7009-curl-ocsp-stapling-bypass-when-using-apple-sectrust","title":"curl OCSP stapling bypass when using Apple SecTrust","severity":"medium","exploited":false,"published_at":"2026-05-13T13:01:57.1+00:00","url":"https://junglewise.ai/threats/cve-2026-7009-curl-ocsp-stapling-bypass-when-using-apple-sectrust"},{"cve":"CVE-2026-6429","cvss":5.3,"epss":0.0051,"slug":"cve-2026-6429-curl-libcurl-netrc-credential-leak-in-redirected-proxy-connections","title":"When asked to both use a `.netrc` file for credentials and to follow HTTP\nredirects, libcurl could leak the password used for the first host","severity":"medium","exploited":false,"published_at":"2026-05-13T13:01:56.93+00:00","url":"https://junglewise.ai/threats/cve-2026-6429-curl-libcurl-netrc-credential-leak-in-redirected-proxy-connections"},{"cve":"CVE-2026-6276","cvss":7.5,"epss":0.0035,"slug":"cve-2026-6276-curl-libcurl-cookie-leak-via-stale-custom-host-header","title":"Using libcurl, when a custom `Host:` header is first set for an HTTP request\nand a second request is subsequently done using the same *easy","severity":"high","exploited":false,"published_at":"2026-05-13T13:01:56.8+00:00","url":"https://junglewise.ai/threats/cve-2026-6276-curl-libcurl-cookie-leak-via-stale-custom-host-header"},{"cve":"CVE-2026-6253","cvss":5.9,"epss":0.0075,"slug":"cve-2026-6253-curl-proxy-credentials-leak-during-redirect-to-different-proxy","title":"curl might erroneously pass on credentials for a first proxy to a second\nproxy. This can happen when the following conditions are true: 1.","severity":"medium","exploited":false,"published_at":"2026-05-13T13:01:56.57+00:00","url":"https://junglewise.ai/threats/cve-2026-6253-curl-proxy-credentials-leak-during-redirect-to-different-proxy"},{"cve":"CVE-2026-5545","cvss":6.5,"epss":0.0051,"slug":"cve-2026-5545-curl-incorrect-connection-reuse-in-negotiate-authentication","title":"libcurl might in some circumstances reuse the wrong connection when asked to\ndo an authenticated HTTP(S) request after a Negotiate-authentic","severity":"medium","exploited":false,"published_at":"2026-05-13T13:01:56.19+00:00","url":"https://junglewise.ai/threats/cve-2026-5545-curl-incorrect-connection-reuse-in-negotiate-authentication"},{"cve":"CVE-2026-4873","cvss":5.9,"epss":0.0036,"slug":"cve-2026-4873-curl-connection-reuse-ignores-tls-requirement-in-email-protocols","title":"A vulnerability exists where a connection requiring TLS incorrectly reuses an\nexisting unencrypted connection from the same connection pool.","severity":"medium","exploited":false,"published_at":"2026-05-13T13:01:55.893+00:00","url":"https://junglewise.ai/threats/cve-2026-4873-curl-connection-reuse-ignores-tls-requirement-in-email-protocols"},{"cve":"CVE-2025-14819","cvss":5.3,"epss":0.0074,"slug":"cve-2025-14819-curl-libcurl-certificate-validation-bypass-in-openssl-backend","title":"curl libcurl certificate validation bypass in OpenSSL backend","severity":"medium","exploited":false,"published_at":"2026-01-08T10:15:46.73+00:00","url":"https://junglewise.ai/threats/cve-2025-14819-curl-libcurl-certificate-validation-bypass-in-openssl-backend"},{"cve":"CVE-2025-9086","cvss":7.5,"epss":0.001,"slug":"cve-2025-9086-curl-out-of-bounds-read-in-cookie-path-comparison","title":"curl out-of-bounds read in cookie path comparison","severity":"high","exploited":false,"published_at":"2025-09-12T06:15:44.1+00:00","url":"https://junglewise.ai/threats/cve-2025-9086-curl-out-of-bounds-read-in-cookie-path-comparison"},{"cve":"CVE-2023-38546","cvss":3.7,"slug":"cve-2023-38546-curl-libcurl-cookie-injection-via-curl-easy-duphandle","title":"curl libcurl cookie injection via curl_easy_duphandle","severity":"low","exploited":false,"published_at":"2023-10-18T04:15:11.137+00:00","url":"https://junglewise.ai/threats/cve-2023-38546-curl-libcurl-cookie-injection-via-curl-easy-duphandle"},{"cve":"CVE-2023-38545","cvss":9.8,"slug":"cve-2023-38545-curl-socks5-heap-buffer-overflow-during-handshake","title":"curl SOCKS5 heap buffer overflow during handshake","severity":"critical","exploited":false,"published_at":"2023-10-18T04:15:11.077+00:00","url":"https://junglewise.ai/threats/cve-2023-38545-curl-socks5-heap-buffer-overflow-during-handshake"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":8},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":1,"exploited":0,"vulnerabilities":2},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"Haxx Curl","slug":"curl","vulnerabilities":43,"url":"https://junglewise.ai/threats/technologies/curl"}],"technology":{"hub":true,"name":"Haxx Libcurl","slug":"libcurl","vendor":{"name":"Haxx","slug":"haxx","url":"https://junglewise.ai/threats/vendors/haxx"},"aliases":[],"category":"library","homepage":"https://curl.se/libcurl/","repo_url":"https://github.com/curl/curl","description":"A free and easy-to-use client-side URL transfer library, supporting a wide range of protocols.","url":"https://junglewise.ai/threats/technologies/libcurl"},"most_severe":[{"cve":"CVE-2023-38545","cvss":9.8,"slug":"cve-2023-38545-curl-socks5-heap-buffer-overflow-during-handshake","title":"curl SOCKS5 heap buffer overflow during handshake","severity":"critical","exploited":false,"published_at":"2023-10-18T04:15:11.077+00:00","url":"https://junglewise.ai/threats/cve-2023-38545-curl-socks5-heap-buffer-overflow-during-handshake"},{"cve":"CVE-2026-18924","cvss":9.1,"epss":0.0058,"slug":"cve-2026-18924-curl-libcurl-http-2-server-push-use-after-free","title":"curl libcurl HTTP/2 server push use-after-free","severity":"critical","exploited":false,"published_at":"2026-09-06T18:17:20.553+00:00","url":"https://junglewise.ai/threats/cve-2026-18924-curl-libcurl-http-2-server-push-use-after-free"},{"cve":"CVE-2026-82208","cvss":7.5,"epss":0.0041,"slug":"cve-2026-82208-curl-libcurl-certificate-validation-bypass-in-wolfssl-backend","title":"curl libcurl certificate validation bypass in wolfSSL backend","severity":"high","exploited":false,"published_at":"2026-09-06T18:17:22.733+00:00","url":"https://junglewise.ai/threats/cve-2026-82208-curl-libcurl-certificate-validation-bypass-in-wolfssl-backend"},{"cve":"CVE-2026-6276","cvss":7.5,"epss":0.0035,"slug":"cve-2026-6276-curl-libcurl-cookie-leak-via-stale-custom-host-header","title":"Using libcurl, when a custom `Host:` header is first set for an HTTP request\nand a second request is subsequently done using the same *easy","severity":"high","exploited":false,"published_at":"2026-05-13T13:01:56.8+00:00","url":"https://junglewise.ai/threats/cve-2026-6276-curl-libcurl-cookie-leak-via-stale-custom-host-header"},{"cve":"CVE-2025-9086","cvss":7.5,"epss":0.001,"slug":"cve-2025-9086-curl-out-of-bounds-read-in-cookie-path-comparison","title":"curl out-of-bounds read in cookie path comparison","severity":"high","exploited":false,"published_at":"2025-09-12T06:15:44.1+00:00","url":"https://junglewise.ai/threats/cve-2025-9086-curl-out-of-bounds-read-in-cookie-path-comparison"},{"cve":"CVE-2026-5545","cvss":6.5,"epss":0.0051,"slug":"cve-2026-5545-curl-incorrect-connection-reuse-in-negotiate-authentication","title":"libcurl might in some circumstances reuse the wrong connection when asked to\ndo an authenticated HTTP(S) request after a Negotiate-authentic","severity":"medium","exploited":false,"published_at":"2026-05-13T13:01:56.19+00:00","url":"https://junglewise.ai/threats/cve-2026-5545-curl-incorrect-connection-reuse-in-negotiate-authentication"},{"cve":"CVE-2026-6253","cvss":5.9,"epss":0.0075,"slug":"cve-2026-6253-curl-proxy-credentials-leak-during-redirect-to-different-proxy","title":"curl might erroneously pass on credentials for a first proxy to a second\nproxy. This can happen when the following conditions are true: 1.","severity":"medium","exploited":false,"published_at":"2026-05-13T13:01:56.57+00:00","url":"https://junglewise.ai/threats/cve-2026-6253-curl-proxy-credentials-leak-during-redirect-to-different-proxy"},{"cve":"CVE-2026-4873","cvss":5.9,"epss":0.0036,"slug":"cve-2026-4873-curl-connection-reuse-ignores-tls-requirement-in-email-protocols","title":"A vulnerability exists where a connection requiring TLS incorrectly reuses an\nexisting unencrypted connection from the same connection pool.","severity":"medium","exploited":false,"published_at":"2026-05-13T13:01:55.893+00:00","url":"https://junglewise.ai/threats/cve-2026-4873-curl-connection-reuse-ignores-tls-requirement-in-email-protocols"},{"cve":"CVE-2025-14819","cvss":5.3,"epss":0.0074,"slug":"cve-2025-14819-curl-libcurl-certificate-validation-bypass-in-openssl-backend","title":"curl libcurl certificate validation bypass in OpenSSL backend","severity":"medium","exploited":false,"published_at":"2026-01-08T10:15:46.73+00:00","url":"https://junglewise.ai/threats/cve-2025-14819-curl-libcurl-certificate-validation-bypass-in-openssl-backend"},{"cve":"CVE-2026-7168","cvss":5.3,"epss":0.0059,"slug":"cve-2026-7168-curl-libcurl-digest-auth-state-leak-when-changing-proxies","title":"Successfully using libcurl to do a transfer over a specific HTTP proxy\n(`proxyA`) with **Digest** authentication and then changing the proxy","severity":"medium","exploited":false,"published_at":"2026-05-13T13:01:57.2+00:00","url":"https://junglewise.ai/threats/cve-2026-7168-curl-libcurl-digest-auth-state-leak-when-changing-proxies"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}