Older events - things that happened earlier in the project
Stuff "gets moved here" from the news page, so some of the links on this page are more likely than others not to work anymore. I still think this page may be of value and I just want you to be aware of this fact. Use the search field to find working pages with similar info.
curl and libcurl 7.84.0 June 27 2022
Pay special attention to these four security vulnerabilities fixed in this version:
curl and libcurl 7.83.1 May 11 2022
Pay special attention to these six security vulnerabilities fixed in this version:
curl and libcurl 7.83.0 April 27 2022
Pay special attention to these four security vulnerabilities fixed in this version:
curl and libcurl 7.82.0 March 5 2022
curl and libcurl 7.81.0 January 5 2022
curl and libcurl 7.80.0 November 10 2021
curl and libcurl 7.79.1 September 22 2021
curl and libcurl 7.79.0 September 15 2021
Pay special attention to the three security vulnerabilities fixed in this version:
curl and libcurl 7.78.0 July 21 2021
Pay special attention to the five security vulnerabilities fixed in this version:
curl and libcurl 7.77.0 May 26 2021
Pay special attention to the three security vulnerabilities fixed in this version:
A new IRC channel May 20 2021
curl and libcurl 7.76.1 April 14 2021
curl and libcurl 7.76.0 March 31 2021
Pay special attention to the two security vulnerabilities fixed in this version: CVE-2021-22876: Automatic referer leaks credentials and CVE-2021-22890: TLS 1.3 session ticket proxy host mixup.
curl and libcurl 7.75.0 February 3 2021
curl and libcurl 7.74.0 December 9 2020
Pay special attention to these security vulnerabilities fixed in this version: CVE-2020-8284: trusting FTP PASV responses, CVE-2020-8285: FTP wildcard stack overflow and CVE-2020-8286: Inferior OCSP verification.
curl.se moved to a new server 23 Oct 2020
curl and libcurl 7.73.0 October 14 2020
curl and libcurl 7.72.0 August 19 2020
Pay special attention to the security vulnerability fixed in this version: CVE-2020-8231: libcurl: wrong connect-only connection.
curl and libcurl 7.71.1 July 1 2020
curl and libcurl 7.71.0 June 24 2020
Pay special attention to the two security vulnerabilities fixed in this version: CVE-2020-8169: Partial password leak over DNS on HTTP redirect and CVE-2020-8177: curl overwrite local file with -J.
curl and libcurl 7.70.0 April 29 2020
curl and libcurl 7.69.1 March 11 2020
curl and libcurl 7.69.0 March 4 2020
curl and libcurl 7.68.0 January 8 2020
Pay special attention to the security vulnerability fixed in this version: CVE-2019-15601: SMB access smuggling via FILE URL on Windows .
curl and libcurl 7.67.0 November 6 2019
curl and libcurl 7.66.0 September 11 2019
Pay special attention to the two security vulnerabilities fixed in this version: CVE-2019-5481: ftp-krb double-free and CVE-2019-5482: TFTP heap buffer overflow.
curl and libcurl 7.65.3 July 19 2019
curl and libcurl 7.65.2 July 17 2019
curl and libcurl 7.65.1 June 5 2019
curl and libcurl 7.65.0 May 22 2019
Pay special attention to the two security vulnerabilities fixed in this version: CVE-2019-5435 and CVE-2019-5436. Both with severity low.
curl and libcurl 7.64.1 March 27 2019
curl and libcurl 7.64.0 February 6 2019
Pay special attention to three security vulnerabilities fixed in this version: CVE-2018-16890, CVE-2019-3822w and CVE-2019-3823.
curl and libcurl 7.63.0 December 12 2018
curl and libcurl 7.62.0 October 31 2018
Pay special attention to two security vulnerabilities fixed in this version: CVE-2018-16839 and CVE-2018-16840.
curl and libcurl 7.61.1 September 5 2018
Pay special attention to the security vulnerability fixed in this version: CVE-2018-14618.
curl and libcurl 7.61.0 July 11 2018
Pay special attention to the security vulnerability fixed in this version: CVE-2018-0500.
curl and libcurl 7.60.0 May 16 2018
Pay special attention to the two security vulnerabilities fixed in this version: CVE-2018-1000300 and CVE-2018-1000301
curl and libcurl 7.59.0 March 14 2018
Pay special attention to the three security vulnerabilities fixed in this version: CVE-2018-1000120, CVE-2018-1000121 and CVE-2018-1000122
curl and libcurl 7.58.0 January 24 2018
Pay special attention to the two security vulnerabilities fixed in this version: CVE-2018-1000005 and CVE-2018-1000007
curl and libcurl 7.57.0 November 29 2017
Pay special attention to the three security vulnerabilities fixed in this version: CVE-2017-8816, CVE-2017-8817 and CVE-2017-8818.
curl and libcurl 7.56.1 October 23 2017
Pay special attention to the CVE-2017-1000257 security vulnerability we fixed.
curl and libcurl 7.56.0 October 4 2017
Pay special attention to the CVE-2017-1000254 security vulnerability we fixed.
curl and libcurl 7.55.1 August 14 2017
curl and libcurl 7.54.1 June 14 2017
Pay special attention to the CVE-2017-9502 security vulnerability we fixed.
curl and libcurl 7.54.0 April 19 2017
Pay special attention to the CVE-2017-7468 security vulnerability we fixed.
curl and libcurl 7.53.1 February 24 2017
We did this patch release this soon after our previous version primarily to address a build error that caused people on Windows some annoyances.
curl and libcurl 7.53.0 February 22 2017
Pay special attention to the CVE-2017-2629 security vulnerability we fixed.
curl and libcurl 7.52.1 December 23 2016
We hurried out this release due to the security vulnerability we found in 7.52.0.
curl and libcurl 7.52.0 December 21 2016
Pay special attention to the new security vulnerabilities.
curl and libcurl 7.51.0 November 2 2016
Pay special attention to the new security vulnerabilities.
curl and libcurl 7.50.3 September 14 2016
Pay special attention to the new security vulnerability CVE-2016-7167.
curl and libcurl 7.50.2 September 7 2016
curl and libcurl 7.50.1 August 3 2016
curl and libcurl 7.50.0 July 21 2016
Windows DLL hijacking May 30 2016
curl and libcurl 7.49.1 May 30 2016
curl and libcurl 7.49.0 May 18 2016
TLS certificate check bypass with mbedTLS/PolarSSL May 18 2016
curl and libcurl 7.48.0 March 23 2016
curl and libcurl 7.47.1 February 8 2016
git repo moved on github February 3 2016
website over HTTPS January 29 2016
curl and libcurl 7.47.0 January 27 2016
This release comes bundled with two security advisories: CVE-2016-0754: local drive traversal when saving file on Windows and CVE-2016-0755: NTLM credentials not-checked for proxy connection re-use.
curl and libcurl 7.46.0 December 2 2015
This is the 150th release counted from the beginning!
curl and libcurl 7.45.0 October 7 2015
curl HTTP cheat sheet September 24 2015
Help us improve it! It will most probably move into the curl site umbrella at some point.
curl and libcurl 7.44.0 August 12 2015
[SECURITY NOTICE] libidn with bad UTF8 input June 29 2015
Release archives over HTTPS June 29 2015
Enjoy!
ISP blacklisted by Spamhaus June 18 2015
We have a fixed IP and we have done nothing wrong here, but apparently collective punishment is a method.
daniel weekly 37 June 17 2015
curl and libcurl 7.43.0 June 17 2015
This release comes bundled with two security advisories: CVE-2015-3236: lingering HTTP credentials in connection re-use and CVE-2015-3237: SMB send off unrelated memory contents.
daniel weekly 36 June 9 2015
daniel weekly 35 June 3 2015
curl user poll 2015 analysis May 26 2015
curl and libcurl 7.42.1 April 29 2015
This release comes bundled another security advisory: CVE-2015-3153: sensitive HTTP server headers also sent to proxies.
curl and libcurl 7.42.0 April 22 2015
This release comes bundled with no less than four different security advisories:
becoming more github friendly March 2 2015
Existing hackers: consider clicking 'watch' on that repo to get notified.
curl and libcurl 7.41.0 February 25 2015
Enhanced vulnerability overview January 9 2015
The new layout is much smaller HTML, and it now features links to specific summaries for each individual curl release through the history. Each summarizing its own vulnerability situation.
For example, you can look at the vulnerability situation for curl 7.37.0 as well as all the others - back to 6.0, released in 1999.
curl and libcurl 7.40.0 January 8 2015
We also publish two security advisories in association with this release. See CVE-2014-8151 and CVE-2014-8150 for all the details.