curl fixes 18 security vulnerabilities, upgrade curl/libcurl as soon as possible and assess related risks
2026-06-29 02:48
Odaily Planet Daily reported that 23pds, Chief Information Security Officer of SlowMist, posted on X, stating that Curl has fixed 18 security vulnerabilities involving authentication bypass, memory safety, and host verification issues. One of the libcurl vulnerabilities has existed for approximately 25 years. The risks affect a wide range of applications, SDKs, containers, firmware, gateways, and CI/CD environments that rely on libcurl. It is recommended to upgrade curl/libcurl as soon as possible and check for the use of outdated libcurl versions, with particular attention to mTLS, proxy authentication, and connection reuse scenarios.
