Security Update News
Update Information
| Title | curl: Default Minimum TLS Version Set to TLS v1.0 (Cryptographic Weakness) |
|---|---|
| Update ID | H1:3246519 |
| Type | hackerone |
| Published | 2025-07-10T18:24:58 |
| Last Updated | 2025-07-10T21:42:53 |
Security Impact
| Severity | NONE |
|---|
AI Analysis
| AI Description | The curl library’s default minimum TLS version is set to TLS v1.0, which is outdated and insecure. This could allow man-in-the-middle attacks or eavesdropping. |
|---|---|
| AI Severity | High |
| AI Vendor | cURL project |
| AI Product | curl |
Update Details
Vulnerability description not provided