curl vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the curl package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
CVE-2024-2398

<0:7.76.1-29.el9_4.1
  • M
CVE-2023-46218

<0:7.76.1-26.el9_3.3
  • M
Improper Authentication

<0:7.76.1-26.el9
  • M
Directory Traversal

<0:7.76.1-26.el9
  • M
Improper Authentication

<0:7.76.1-26.el9
  • M
Arbitrary Code Injection

<0:7.76.1-26.el9
  • H
CVE-2023-38546

<0:7.76.1-23.el9_2.4
  • H
Out-of-bounds Write

<0:7.76.1-26.el9_3.2
  • M
CVE-2023-28322

<0:7.76.1-23.el9_2.2
  • M
Improper Certificate Validation

<0:7.76.1-23.el9_2.2
  • M
Improper Authentication

<0:7.76.1-23.el9
  • L
CVE-2022-35252

<0:7.76.1-23.el9
  • L
Use After Free

<0:7.76.1-23.el9
  • M
Allocation of Resources Without Limits or Throttling

<0:7.76.1-19.el9_1.2
  • M
Exposure of Resource to Wrong Sphere

<0:7.76.1-19.el9_1.1
  • L
CVE-2022-27775

<0:7.76.1-19.el9
  • M
Incorrect Default Permissions

<0:7.76.1-14.el9_0.5
  • M
Out-of-bounds Write

<0:7.76.1-14.el9_0.5
  • M
Allocation of Resources Without Limits or Throttling

<0:7.76.1-14.el9_0.5
  • M
Improper Certificate Validation

<0:7.76.1-14.el9_0.4
  • M
Insufficiently Protected Credentials

<0:7.76.1-14.el9_0.4
  • M
Missing Authentication for Critical Function

<0:7.76.1-14.el9_0.4
  • M
Insufficiently Protected Credentials

<0:7.76.1-14.el9_0.4