curl: Default Minimum TLS Version Set to TLS v1.0 (Cryptographic Weakness)

Security Update News

Update Information

Title curl: Default Minimum TLS Version Set to TLS v1.0 (Cryptographic Weakness)
Update ID H1:3246519
Type hackerone
Published 2025-07-10T18:24:58
Last Updated 2025-07-10T21:42:53

Security Impact

Severity NONE

AI Analysis

AI Description The curl library’s default minimum TLS version is set to TLS v1.0, which is outdated and insecure. This could allow man-in-the-middle attacks or eavesdropping.
AI Severity High
AI Vendor cURL project
AI Product curl

Update Details

Vulnerability description not provided

View Advisory Details

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.