curl / Docs / Vulnerability table / 4.2 vulnerabilities

Vulnerabilities in curl 4.2

curl version 4.2 was released on April 15 1998

It has the following 4 published security problems.

FlawFrom versionTo and including
trusting FTP PASV responses4.07.73.0
remote filename path traversal in curl tool for Windows4.07.46.0
sensitive HTTP server headers also sent to proxies4.07.42.0
cookie leak with IP address as domain4.07.37.1

Futher details

CVE data for 4.2 provided as JSON.

Changelog for curl 4.2

See vulnerability summary for the previous release: 4.1 or the subsequent release: 4.3