curl - HackerOne Reports
View on HackerOne247
Total Reports
13
Critical
47
High
82
Medium
64
Low
error parse uri path in curl
Reported by:
iylz
|
Disclosed:
High
Weakness: Improper Access Control - Generic
Use after free (read) in curl_multi_perform with DoH and Proxy options, and resolve timeouts
Reported by:
catenacyber
|
Disclosed:
Weakness: Use After Free
Memory leak in CURLOPT_XOAUTH2_BEARER
Reported by:
pappacoda
|
Disclosed:
Medium
Weakness: Uncontrolled Resource Consumption
Heap Buffer Overflow (READ of size 1) in ourWriteOut
Reported by:
geeknik
|
Disclosed:
Low
Weakness: Heap Overflow
Only OpenSSL handles a CRL when passed in via CApath
Reported by:
salvet
|
Disclosed:
High
Weakness: Improper Certificate Validation
Arbitrary File Deletion Vulnerability in curl Source Code via os.unlink()
Reported by:
aadityaathehacker
|
Disclosed:
High
Weakness: Improper Input Validation
-H with space prefix leads to previous header injection when used with --proxy
Reported by:
spongebhav
|
Disclosed:
Medium
Weakness: Improper Check or Handling of Exceptional Conditions
Previous
Page 13 of 13