Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2pvc-5qw9-h3ph

Опубликовано: 14 мая 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

When asked to both use a .netrc file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.

When asked to both use a .netrc file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.

EPSS

Процентиль: 41%
0.00519
Низкий

5.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
3 месяца назад

When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.

CVSS3: 6.5
redhat
3 месяца назад

When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.

CVSS3: 5.3
nvd
3 месяца назад

When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.

CVSS3: 5.3
msrc
3 месяца назад

netrc credential leak with reused proxy connection

CVSS3: 5.3
debian
3 месяца назад

When asked to both use a `.netrc` file for credentials and to follow H ...

EPSS

Процентиль: 41%
0.00519
Низкий

5.3 Medium

CVSS3