Vulnerabilities in curl 8.9.1
curl version 8.9.1 was released on July 31 2024
It has the following 3 published security problems.
Flaw | From version | To and including |
---|---|---|
netrc and redirect credential leak | 6.5 | 8.11.0 |
HSTS subdomain overwrites parent cache entry | 7.74.0 | 8.10.1 |
OCSP stapling bypass with GnuTLS | 7.41.0 | 8.9.1 |
Futher details
CVE data for 8.9.1 provided as JSON.
See vulnerability summary for the previous release: 8.9.0 or the subsequent release: 8.10.0