Количество 7
Количество 7
CVE-2026-7168
Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`.
CVE-2026-7168
Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`.
CVE-2026-7168
Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`.
CVE-2026-7168
cross-proxy Digest auth state leak
CVE-2026-7168
Successfully using libcurl to do a transfer over a specific HTTP proxy ...
ROS-20260624-73-0034
Уязвимость curl
GHSA-v92m-hrhj-gw54
Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-7168 Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-7168 Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-7168 Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-7168 cross-proxy Digest auth state leak | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
CVE-2026-7168 Successfully using libcurl to do a transfer over a specific HTTP proxy ... | CVSS3: 5.3 | 0% Низкий | 3 месяца назад | |
ROS-20260624-73-0034 Уязвимость curl | CVSS3: 5.3 | 0% Низкий | около 1 месяца назад | |
GHSA-v92m-hrhj-gw54 Successfully using libcurl to do a transfer over a specific HTTP proxy (`proxyA`) with **Digest** authentication and then changing the proxy host to a second one (`proxyB`) for a second transfer, reusing the same handle, makes libcurl wrongly pass on the `Proxy-Authorization:` header field meant for `proxyA`, to `proxyB`. | CVSS3: 5.3 | 0% Низкий | 3 месяца назад |
Уязвимостей на страницу