Known Vulnerabilities for Libcurl by Haxx
Listed below are 10 of the newest known vulnerabilities associated with "Libcurl" by "Haxx".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-33752 json | curl_cffi is the a Python binding for curl. Prior to 0.15.0, curl_cffi does not restrict requests to internal IP ranges, and ... | Not Provided | 2026-04-06 | 2026-04-06 |
| CVE-2023-38546 json | This flaw allows an attacker to insert cookies at will into a running program using libcurl, if the specific series of condit... | 3.7 - LOW | 2023-10-18 | 2024-01-26 |
| CVE-2023-38545 json | This flaw makes curl overflow a heap based buffer in the SOCKS5 proxy handshake. When curl is asked to pass along the host n... | 9.8 - CRITICAL | 2023-10-18 | 2024-04-01 |
| CVE-2023-32001 json | ** REJECT ** We issued this CVE pre-maturely, as we have subsequently realized that this issue points out a problem that ther... | Not Provided | 2023-07-26 | 2023-11-07 |
| CVE-2023-27538 json | An authentication bypass vulnerability exists in libcurl prior to v8.0.0 where it reuses a previously established SSH connect... | 5.5 - MEDIUM | 2023-03-30 | 2024-03-27 |
| CVE-2023-27537 json | A double free vulnerability exists in libcurl <8.0.0 when sharing HSTS data between separate "handles". This sharing was intr... | 5.9 - MEDIUM | 2023-03-30 | 2024-03-27 |
| CVE-2023-27536 json | An authentication bypass vulnerability exists libcurl <8.0.0 in the connection reuse feature which can reuse previously estab... | 5.9 - MEDIUM | 2023-03-30 | 2024-03-27 |
| CVE-2023-27535 json | An authentication bypass vulnerability exists in libcurl <8.0.0 in the FTP connection reuse feature that can result in wrong ... | 5.9 - MEDIUM | 2023-03-30 | 2024-03-27 |
| CVE-2022-27782 json | libcurl would reuse a previously created connection even when a TLS or SSHrelated option had been changed that should have pr... | 5.9 - MEDIUM | 2022-06-02 | 2026-04-16 |
| CVE-2022-27781 json | libcurl provides the `CURLOPT_CERTINFO` option to allow applications torequest details to be returned about a server's certif... | 5.9 - MEDIUM | 2022-06-02 | 2026-04-16 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Haxx | Libcurl | 7.9.8 | |||
| Application | Haxx | Libcurl | 7.9.7 | |||
| Application | Haxx | Libcurl | 7.9.6 | |||
| Application | Haxx | Libcurl | 7.9.5 | |||
| Application | Haxx | Libcurl | 7.9.4 | |||
| Application | Haxx | Libcurl | 7.9.3 | |||
| Application | Haxx | Libcurl | 7.9.2 | |||
| Application | Haxx | Libcurl | 7.9.1 | |||
| Application | Haxx | Libcurl | 7.9 | |||
| Application | Haxx | Libcurl | 7.8.1 | |||
| Application | Haxx | Libcurl | 7.8 | |||
| Application | Haxx | Libcurl | 7.74.0 | |||
| Application | Haxx | Libcurl | 7.73.0 | |||
| Application | Haxx | Libcurl | 7.72.0 | |||
| Application | Haxx | Libcurl | 7.71.1 | |||
| Application | Haxx | Libcurl | 7.71.0 | |||
| Application | Haxx | Libcurl | 7.70.0 | |||
| Application | Haxx | Libcurl | 7.7.3 | |||
| Application | Haxx | Libcurl | 7.7.2 | |||
| Application | Haxx | Libcurl | 7.7.1 |