Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 11

Количество 11

github логотип

GHSA-2jc6-hc33-hv48

3 месяца назад

Using libcurl, when a custom `Host:` header is first set for an HTTP request and a second request is subsequently done using the same *easy handle* but without the custom `Host:` header set, the second request would use stale information and pass on cookies meant for the first host in the second request. Leak them.

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2026-6276

3 месяца назад

Using libcurl, when a custom `Host:` header is first set for an HTTP request and a second request is subsequently done using the same *easy handle* but without the custom `Host:` header set, the second request would use stale information and pass on cookies meant for the first host in the second request. Leak them.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-6276

3 месяца назад

Using libcurl, when a custom `Host:` header is first set for an HTTP request and a second request is subsequently done using the same *easy handle* but without the custom `Host:` header set, the second request would use stale information and pass on cookies meant for the first host in the second request. Leak them.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2026-6276

3 месяца назад

Using libcurl, when a custom `Host:` header is first set for an HTTP request and a second request is subsequently done using the same *easy handle* but without the custom `Host:` header set, the second request would use stale information and pass on cookies meant for the first host in the second request. Leak them.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-6276

3 месяца назад

stale custom cookie host causes cookie leak

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-6276

3 месяца назад

Using libcurl, when a custom `Host:` header is first set for an HTTP r ...

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260624-73-0037

около 1 месяца назад

Уязвимость curl

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20973-1

около 2 месяцев назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:2703-1

около 1 месяца назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1940-1

3 месяца назад

Security update for curl

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1717-1

3 месяца назад

Security update for curl

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-2jc6-hc33-hv48

Using libcurl, when a custom `Host:` header is first set for an HTTP request and a second request is subsequently done using the same *easy handle* but without the custom `Host:` header set, the second request would use stale information and pass on cookies meant for the first host in the second request. Leak them.

CVSS3: 7.5
0%
Низкий
3 месяца назад
ubuntu логотип
CVE-2026-6276

Using libcurl, when a custom `Host:` header is first set for an HTTP request and a second request is subsequently done using the same *easy handle* but without the custom `Host:` header set, the second request would use stale information and pass on cookies meant for the first host in the second request. Leak them.

CVSS3: 7.5
0%
Низкий
3 месяца назад
redhat логотип
CVE-2026-6276

Using libcurl, when a custom `Host:` header is first set for an HTTP request and a second request is subsequently done using the same *easy handle* but without the custom `Host:` header set, the second request would use stale information and pass on cookies meant for the first host in the second request. Leak them.

CVSS3: 3.7
0%
Низкий
3 месяца назад
nvd логотип
CVE-2026-6276

Using libcurl, when a custom `Host:` header is first set for an HTTP request and a second request is subsequently done using the same *easy handle* but without the custom `Host:` header set, the second request would use stale information and pass on cookies meant for the first host in the second request. Leak them.

CVSS3: 7.5
0%
Низкий
3 месяца назад
msrc логотип
CVE-2026-6276

stale custom cookie host causes cookie leak

CVSS3: 7.5
0%
Низкий
3 месяца назад
debian логотип
CVE-2026-6276

Using libcurl, when a custom `Host:` header is first set for an HTTP r ...

CVSS3: 7.5
0%
Низкий
3 месяца назад
redos логотип
ROS-20260624-73-0037

Уязвимость curl

CVSS3: 7.5
0%
Низкий
около 1 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20973-1

Security update for curl

около 2 месяцев назад
suse-cvrf логотип
SUSE-SU-2026:2703-1

Security update for curl

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1940-1

Security update for curl

3 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1717-1

Security update for curl

3 месяца назад

Уязвимостей на страницу