CVE-2026-11564

libcurl keeps previously used connections in a connection pool for subsequent transfers to reuse if one of them matches the setup. An easy handle that first uses default native CA trust can continue trusting the native platform store after the application switches that same handle to custom CA material for a later transfer.
References
Link Resource
https://curl.se/docs/CVE-2026-11564.html Patch Vendor Advisory
https://curl.se/docs/CVE-2026-11564.json Vendor Advisory
https://hackerone.com/reports/3788984 Exploit Issue Tracking Third Party Advisory
https://hackerone.com/reports/3788984 Exploit Issue Tracking Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-07-03 07:16

Updated : 2026-09-15 07:16


NVD link : CVE-2026-11564

Mitre link : CVE-2026-11564

CVE.ORG link : CVE-2026-11564


JSON object : View

Products Affected

haxx

  • curl
CWE
CWE-295

Improper Certificate Validation