ΠΠΎΠ»ΠΈΡΠ΅ΡΡΠ²ΠΎ 11
ΠΠΎΠ»ΠΈΡΠ΅ΡΡΠ²ΠΎ 11
CVE-2026-8924
A flaw in curlβs cookie parsing logic allows a malicious HTTP server to set 'super cookies' that bypass the Public Suffix List check. This enables an attacker-controlled origin to inject cookies that curl subsequently scopes and transmits to unrelated third-party domains.
CVE-2026-8924
A flaw in curlβs cookie parsing logic allows a malicious HTTP server to set 'super cookies' that bypass the Public Suffix List check. This enables an attacker-controlled origin to inject cookies that curl subsequently scopes and transmits to unrelated third-party domains.
CVE-2026-8924
A flaw in curlβs cookie parsing logic allows a malicious HTTP server to set 'super cookies' that bypass the Public Suffix List check. This enables an attacker-controlled origin to inject cookies that curl subsequently scopes and transmits to unrelated third-party domains.
CVE-2026-8924
trailing dot domain super cookie
CVE-2026-8924
A flaw in curl\u2019s cookie parsing logic allows a malicious HTTP ser ...
GHSA-hm6c-rc5h-32m9
A flaw in curlβs cookie parsing logic allows a malicious HTTP server to set 'super cookies' that bypass the Public Suffix List check. This enables an attacker-controlled origin to inject cookies that curl subsequently scopes and transmits to unrelated third-party domains.
SUSE-SU-2026:3814-1
Security update for curl
openSUSE-SU-2026:21272-1
Security update for curl
SUSE-SU-2026:3043-1
Security update for curl
SUSE-SU-2026:2926-1
Security update for curl
SUSE-SU-2026:2925-1
Security update for curl
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΠ΅ΠΉ Π½Π° ΡΡΡΠ°Π½ΠΈΡΡ
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΡ | CVSS | EPSS | ΠΠΏΡΠ±Π»ΠΈΠΊΠΎΠ²Π°Π½ΠΎ | |
|---|---|---|---|---|
CVE-2026-8924 A flaw in curlβs cookie parsing logic allows a malicious HTTP server to set 'super cookies' that bypass the Public Suffix List check. This enables an attacker-controlled origin to inject cookies that curl subsequently scopes and transmits to unrelated third-party domains. | CVSS3: 9.1 | 1% ΠΠΈΠ·ΠΊΠΈΠΉ | 2 ΠΌΠ΅ΡΡΡΠ° Π½Π°Π·Π°Π΄ | |
CVE-2026-8924 A flaw in curlβs cookie parsing logic allows a malicious HTTP server to set 'super cookies' that bypass the Public Suffix List check. This enables an attacker-controlled origin to inject cookies that curl subsequently scopes and transmits to unrelated third-party domains. | CVSS3: 6.5 | 1% ΠΠΈΠ·ΠΊΠΈΠΉ | 2 ΠΌΠ΅ΡΡΡΠ° Π½Π°Π·Π°Π΄ | |
CVE-2026-8924 A flaw in curlβs cookie parsing logic allows a malicious HTTP server to set 'super cookies' that bypass the Public Suffix List check. This enables an attacker-controlled origin to inject cookies that curl subsequently scopes and transmits to unrelated third-party domains. | CVSS3: 9.1 | 1% ΠΠΈΠ·ΠΊΠΈΠΉ | 2 ΠΌΠ΅ΡΡΡΠ° Π½Π°Π·Π°Π΄ | |
CVE-2026-8924 trailing dot domain super cookie | 1% ΠΠΈΠ·ΠΊΠΈΠΉ | 2 ΠΌΠ΅ΡΡΡΠ° Π½Π°Π·Π°Π΄ | ||
CVE-2026-8924 A flaw in curl\u2019s cookie parsing logic allows a malicious HTTP ser ... | CVSS3: 9.1 | 1% ΠΠΈΠ·ΠΊΠΈΠΉ | 2 ΠΌΠ΅ΡΡΡΠ° Π½Π°Π·Π°Π΄ | |
GHSA-hm6c-rc5h-32m9 A flaw in curlβs cookie parsing logic allows a malicious HTTP server to set 'super cookies' that bypass the Public Suffix List check. This enables an attacker-controlled origin to inject cookies that curl subsequently scopes and transmits to unrelated third-party domains. | CVSS3: 9.1 | 1% ΠΠΈΠ·ΠΊΠΈΠΉ | 2 ΠΌΠ΅ΡΡΡΠ° Π½Π°Π·Π°Π΄ | |
SUSE-SU-2026:3814-1 Security update for curl | 21 Π΄Π΅Π½Ρ Π½Π°Π·Π°Π΄ | |||
openSUSE-SU-2026:21272-1 Security update for curl | 2 ΠΌΠ΅ΡΡΡΠ° Π½Π°Π·Π°Π΄ | |||
SUSE-SU-2026:3043-1 Security update for curl | 2 ΠΌΠ΅ΡΡΡΠ° Π½Π°Π·Π°Π΄ | |||
SUSE-SU-2026:2926-1 Security update for curl | 2 ΠΌΠ΅ΡΡΡΠ° Π½Π°Π·Π°Π΄ | |||
SUSE-SU-2026:2925-1 Security update for curl | 2 ΠΌΠ΅ΡΡΡΠ° Π½Π°Π·Π°Π΄ |
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡΠ΅ΠΉ Π½Π° ΡΡΡΠ°Π½ΠΈΡΡ