curl: Sensitive information disclosure with malicious netrc file
Vulnerability description not...Read More ...
Continue ReadingJuly 07, 2025
curl: Credential leak on redirect due to improper state clearing when parsing macdef in netrc.c
Vulnerability description not...Read More ...
Continue ReadingJuly 07, 2025
curl: OS Command Injection in scripts/firefox-db2pem.sh via untrusted certificate nicknames
Vulnerability description not...Read More ...
Continue ReadingJuly 07, 2025
curl: arbitrary file read via `file://` path traversal with `–path-as-is`
Vulnerability description not...Read More ...
Continue ReadingJuly 07, 2025
curl: HTTP Proxy Bypass via `CURLOPT_CUSTOMREQUEST` Verb Tunneling
Vulnerability description not...Read More ...
Continue ReadingJuly 07, 2025
curl: CRLF injection in libcurl’s SMTP client via –mail-from and –mail-rcpt allows SMTP command smuggling
Vulnerability description not...Read More ...
Continue ReadingJuly 07, 2025
CVE-2025-36014
creation_timestamp| type| source ---|---|--- 2025-07-07 16:47:12+00:00| seen|...Read More ...
Continue ReadingJuly 07, 2025
You Should Run a Certificate Transparency Log
Hear me out. If you are an organization with some spare storage and bandwidth, or an engineer looking to justify an overprovisioned homelab, you should consider running a Certificate Transparency log. ...
Continue ReadingJuly 07, 2025
Back to Main