curl: Unsafe Global IFS Modification in OS400 Shell Script Enables Command Injection and Parsing Flaws (CWE-78/CWE-20)
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
curl: Account/Repository Takeover via Abandoned GitHub Username in curl’s href_extractor.c
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
curl: ## Title Heap Use-After-Free Vulnerability in `curl` Leading to Potential Code Execution
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
Node.js: CWE-195 in ExternalMemoryAccounter::Increase()
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
curl: HTTP Proxy Bypass via `CURLOPT_CUSTOMREQUEST` Verb Tunneling
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
curl: WebSocket Fragmentation DoS on Curl Client
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
curl: CRLF injection in libcurl’s SMTP client via –mail-from and –mail-rcpt allows SMTP command smuggling
Vulnerability description not...Read More ...
Continue ReadingSeptember 14, 2025
Back to Main