Количество 8
Количество 8
GHSA-v92m-hrhj-gw54
Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`.
CVE-2026-7168
Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`.
CVE-2026-7168
Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`.
CVE-2026-7168
Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`.
CVE-2026-7168
cross-proxy Digest auth state leak
CVE-2026-7168
Successfully using libcurl to do a transfer over a specific HTTP proxy ...
BDU:2026-09778
Уязвимость библиотеки libcurl программного средства для взаимодействия с серверами cURL, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
ROS-20260624-73-0034
Уязвимость curl
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
GHSA-v92m-hrhj-gw54 Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-7168 Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-7168 Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-7168 Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-7168 cross-proxy Digest auth state leak | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-7168 Successfully using libcurl to do a transfer over a specific HTTP proxy ... | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
BDU:2026-09778 Уязвимость библиотеки libcurl программного средства для взаимодействия с серверами cURL, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
ROS-20260624-73-0034 Уязвимость curl | CVSS3: 5.3 | 0% Низкий | около 1 месяца назад |
Уязвимостей на страницу