Articles tagged TLS
-
Vulnerabilitycurl Vulnerability (CVE-2026-82208)
CVE-2026-82208 is a CVSS 7.5 high-severity flaw where libcurl silently reinstalls a cached wolfSSL trust store after a CURLOPT_SSL_CTX_FUNCTION callback replaces it, accepting certificates the callback should have rejected.
-
Vulnerabilitycurl Certificate Pinning Bypass (CVE-2026-80230)
CVE-2026-80230 is a CVSS 7.5 high-severity flaw where libcurl skips public-key-pinning enforcement on connections without a presented server certificate when standard peer verification is disabled.
-
Vulnerabilitycurl Vulnerability (CVE-2026-80231)
CVE-2026-80231 is a CVSS 7.5 high-severity connection-reuse flaw where libcurl reuses an HTTPS connection across different Native CA Store settings.