curl vulnerability

With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can silently reinstall the cached store after the callback returns. A certificate trusted by the cached store but rejected by the callback-selected store is then incorrectly accepted.

Published 6 Sep 2026Updated 6 Sep 20263 sources
CVSS 0.0

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.