Known vulnerabilities in cURL 7.9.2

Software: cURL
Version: 7.9.2
Software CPE: cpe:2.3:a:curl_haxx_se:curl:*:*:*:*:*:*:*:*
Total vulnerabilities: 30
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting cURL version 7.9.2 cURL 7.9.2 is affected by 30 vulnerabilities: 4 high, 19 medium, 7 low Critical High Medium Low

Vulnerabilities (30)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU135079 - Authentication Bypass by Primary Weakness
CVE-2026-8932
CWE-305 Low
No
No
8.21.0 24.06.2026 SB2026062427
SB2026081995
SB2026082669
and 8 more
#VU123889 - Authentication Bypass by Primary Weakness
CVE-2026-3784
CWE-305 Medium
No
No
8.19.0 11.03.2026 SB2026031143
SB2026031238
SB2026031262
and 19 more
#VU101654 - Exposure of sensitive information to an unauthorized actor
CVE-2024-11053
CWE-200 Low
No
No
8.11.1 11.12.2024 SB2024121137
SB2024121189
SB2024121190
and 32 more
#VU81863 - External Control of File Name or Path
CVE-2023-38546
CWE-73 Low
No
No
8.4.0 11.10.2023 SB2023101129
SB2023101135
SB2023101149
and 125 more
#VU76238 - Expected Behavior Violation
CVE-2023-28322
CWE-440 Medium
No
No
8.1.0 17.05.2023 SB2023051752
SB2023051760
SB2023051761
and 88 more
#VU73826 - Improper input validation
CVE-2023-27533
CWE-20 Low
No
No
8.0.0 20.03.2023 SB2023032027
SB2023032028
SB2023032044
and 42 more
#VU68746 - Expected Behavior Violation
CVE-2022-32221
CWE-440 Medium
No
No
7.86.0 26.10.2022 SB2022102624
SB2022102643
SB2022102644
and 58 more
#VU66881 - Improper input validation
CVE-2022-35252
CWE-20 Medium
No
No
7.85.0 31.08.2022 SB2022083106
SB2022090108
SB2022090217
and 55 more
#VU62644 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27776
CWE-200 Low
No
No
7.83.0 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 62 more
#VU62641 - Exposure of sensitive information to an unauthorized actor
CVE-2022-27774
CWE-200 Medium
No
No
7.83.0 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 57 more
#VU61306 - Improper input validation
CVE-2022-22623
CWE-20 Medium
No
No
7.79.1 14.03.2022 SB2022031431
SB2022031433
#VU53587 - Use of Uninitialized Variable
CVE-2021-22898
CWE-457 Medium
No
No
7.77.0 26.05.2021 SB2021052620
SB2021052711
SB2021060128
and 47 more
#VU51821 - Exposure of sensitive information to an unauthorized actor
CVE-2021-22876
CWE-200 Medium
No
No
7.76.0 31.03.2021 SB2021033111
SB2021040104
SB2021040117
and 31 more
#VU48893 - Exposure of sensitive information to an unauthorized actor
CVE-2020-8284
CWE-200 Medium
No
No
7.74.0 09.12.2020 SB2020120902
SB2020120915
SB2020120927
and 31 more
#VU24338 - Improper input validation
CVE-2019-15601
CWE-20 Medium
No
No
7.68.0 16.01.2020 SB2020011605
SB2020041716
SB2020041901
and 3 more
#VU33010 - Security Features
CVE-2016-8615
CWE-254 Medium
No
No
7.51.0 01.08.2018 SB2018080121
SB2016111006
SB2016110309
and 13 more
#VU33011 - Credentials Management
CVE-2016-8616
CWE-255 Medium
No
No
7.51.0 01.08.2018 SB2018080122
SB2016111006
SB2016110309
and 13 more
#VU33014 - Improper input validation
CVE-2016-8625
CWE-20 Medium
No
No
7.51.0 01.08.2018 SB2018080125
SB2016110317
SB2016110324
and 6 more
#VU33018 - Double Free
CVE-2016-8619
CWE-415 High
No
No
7.51.0 01.08.2018 SB2018080126
SB2016111006
SB2016110309
and 14 more
#VU33019 - Out-of-bounds read
CVE-2016-8620
CWE-125 High
No
No
7.51.0 01.08.2018 SB2018080127
SB2016111006
SB2016110309
and 8 more


Showing elements 1 - 20 out of 30