curl: Unpreserved file permissions
curl 7.73
curl: POST following PUT confusion
curl: TELNET option IAC injection
curl: use-after-free and double-free in MQTT sending
curl: SFTP path ~ resolving discrepancy
HTTP/2 push headers memory-leak
curl: OAUTH2 bearer bypass in connection re-use
curl: CURLOPT_SSLCERT mixup with Secure Transport
curl: Requirement to use TLS not properly enforced for IMAP, POP3, and FTP protocols
curl: bad local IPv6 connection reuse
curl: CERTINFO never-ending busy-loop
curl: TLS and SSH connection too eager reuse
gzip integer overflow
wrong proxy connection reuse with credentials
bad reuse of HTTP Negotiate connection
curl: Content not matching hash in Metalink is not being discarded
curl: auth/cookie leak on redirect
curl: HTTP compression denial of service
curl: HTTP multi-header compression denial of service
curl: information disclosure by exploiting a mixed case flaw
OCSP stapling bypass with GnuTLS
broken TLS options for threaded LDAPS
curl: Server responses received before STARTTLS processed after TLS handshake
curl: FTP-KRB bad message verification
curl: Use-after-free triggered by an HTTP proxy deny response
curl: siglongjmp race condition may lead to crash
curl: IDN wildcard match may lead to Improper Cerificate Validation
curl: credential leak on redirect
curl: curl: Proxy credential disclosure via redirects to unauthenticated proxies
curl: curl: Information disclosure due to incorrect TLS connection reuse
token leak with redirect and netrc
libssh global known_hosts override
bearer token leak on cross-protocol redirect
curl: Cipher settings shared for all connections when using schannel TLS backed
curl: Metalink download sends credentials
curl: Incorrect fix for CVE-2021-22898 TELNET stack contents disclosure
curl: more POST-after-PUT confusion
missing SFTP host verification with wolfSSH
curl: Set-Cookie denial of service
curl: FTP PASV command response can cause curl to connect to arbitrary host
curl: Bad connection reuse due to flawed path name checks
curl: Incorrect handling of control code characters in cookies
libssh key passphrase bypass without agent set
curl: TELNET stack contents disclosure