News

Curl Fixes a 25-Year-Old Bug in Its Largest CVE Release Yet

  • Pierluigi Paganini--Securityaffairs.com
  • published date: 2026-06-25 19:20:27 UTC

Curl fixed 18 vulnerabilities, including a 25-year-old bug, with issues spanning auth bypass, memory safety, and host validation in libcurl. Curl maintainers addressed eighteen vulnerabilities with a single update, and one of them goes back 25 years. That’s n…

Curl Fixes a 25-Year-Old Bug in Its Largest CVE Release Yet Curl maintainers addressed eighteen vulnerabilities with a single update, and one of them goes back 25 years. Thats not a typo, it really … [+3984 chars]