Recent Advisories

Severity ID Title Vendor Product Date Type
Unknown ADV-7539

curl: CRLF injection in libcurl’s SMTP client via –mail-from and –mail-rcpt allows SMTP command smuggling

Security Update News Update Information Title curl: CRLF injection in libcurl’s SMTP client via –mail-from and –mail-rcpt allows ...

N/A N/A NEWS
Unknown ADV-7463

curl: HTTP Proxy Bypass via `CURLOPT_CUSTOMREQUEST` Verb Tunneling

Security Update News Update Information Title curl: HTTP Proxy Bypass via `CURLOPT_CUSTOMREQUEST` Verb Tunneling Update ID H1:3231321 Type hackeron...

N/A N/A NEWS
Unknown ADV-7427

curl: Stack-based Buffer Overflow in TELNET NEW_ENV Option Handling

Security Update News Update Information Title curl: Stack-based Buffer Overflow in TELNET NEW_ENV Option Handling Update ID H1:3230082 Type hackero...

N/A N/A NEWS
Unknown ADV-7390

curl: Heap Buffer Overflow in libcurl curl_slist_append via Unterminated String

Security Update News Update Information Title curl: Heap Buffer Overflow in libcurl curl_slist_append via Unterminated String Update ID H1:3229490 ...

N/A N/A NEWS
Unknown ADV-7285

curl: OS Command Injection in scripts/firefox-db2pem.sh via untrusted certificate nicknames

Security Update News Update Information Title curl: OS Command Injection in scripts/firefox-db2pem.sh via untrusted certificate nicknames Update ID...

N/A N/A NEWS
Unknown ADV-6813

Hemi VDP: WordPress Version Exposure via /wp-links-opml.php on hemi.xyz

Security Update News Update Information Title Hemi VDP: WordPress Version Exposure via /wp-links-opml.php on hemi.xyz Update ID H1:3198394 Type hac...

N/A N/A NEWS
Unknown ADV-6745

Lichess: Path Traversal Vulnerability in Lila Project

Security Update News Update Information Title Lichess: Path Traversal Vulnerability in Lila Project Update ID H1:3181066 Type hackerone Published 2...

N/A N/A NEWS
Unknown ADV-5607

curl: Memory Leak in libcurl via Location Header Handling (CWE-770)

Security Update News Update Information Title curl: Memory Leak in libcurl via Location Header Handling (CWE-770) Update ID H1:3158093 Type hackero...

N/A N/A NEWS
Unknown ADV-3907

curl: Memory Leak

Security Update News Update Information Title curl: Memory Leak Update ID H1:3137657 Type hackerone Published 2025-05-09T20:18:26 Last Updated 2025...

N/A N/A NEWS
Unknown ADV-3572

curl: CRLF Injection in `–proxy-header` allows extra HTTP headers (CWE-93)

Security Update News Update Information Title curl: CRLF Injection in `–proxy-header` allows extra HTTP headers (CWE-93) Update ID H1:3133379...

N/A N/A NEWS