Node.js: Windows Device Names Still Allow Path Traversal in UNC Paths After CVE-2025-27210 Fix
Vulnerability description not...Read More ...
Continue ReadingAugust 11, 2025
curl: curl ASSERTs when accessing an LDAP URL
Vulnerability description not...Read More ...
Continue ReadingAugust 11, 2025
curl: GnuTLS CURLINFO_TLS_SESSION / CURLINFO_TLS_SSL_PTR type confusion
Vulnerability description not...Read More ...
Continue ReadingAugust 11, 2025
curl: OpenSSL HTTP/3 bogus CURLINFO_TLS_SSL_PTR
Vulnerability description not...Read More ...
Continue ReadingAugust 11, 2025
curl: on the implications of permitting procedural culling
Vulnerability description not...Read More ...
Continue ReadingAugust 11, 2025
curl: Use after free (or assert triggered) with failed allocations in openssl
Vulnerability description not...Read More ...
Continue ReadingAugust 11, 2025
curl: CVE-2025-5399: WebSocket endless loop
The function curl_ws_send() in libcurl contains an infinite loop that can be triggered by a malicious server under specific circumstances. The loop is caused by a condition in the code that is not pro ...
Continue ReadingAugust 11, 2025
curl: Exposure of Private RSA Private Key in curl GitHub Repository
Vulnerability description not...Read More ...
Continue ReadingAugust 11, 2025
Back to Main