curl vulnerability

curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.

Published 11 Mar 2026Updated 15 Sep 20267 sources
CVSS 6.5 ✓ VERIFIED REFERENCE

Source timeline

CVE record published by NVDView source ↗