libcurl
Security Risk Profile
90
/100
criticalSecurity Risk Score
Comprehensive risk assessment based on 7 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 21, 2005 to present
7
Total CVEs
6
Critical+High
0
Exploited
0
Unpatched
Threat Assessment
Avg CVSS
8.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
0
Critical/High
Risk Level
90/100
critical
Severity Distribution
Critical
2High
4Medium
0Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
2
2
Use After Free
1
Most Affected Products
1. curl libcurl65
2. libcurl libcurl30
3. haxx curl3
4. curl curl2
5. Microsoft azl3 curl 8.11.1-111
Recent Vulnerabilities
See more →CVE-2026-11856
CVSS 9.8critical
cross-origin Digest auth state leak
7/3/2026
CVE-2026-10536
CVSS 9.8critical
HTTP/2 stream-dependency tree UAF
7/3/2026
https://www.zdnet.com/article/security-updates-released-for-widely-used-linux-utility-curl/
unknown
Nasty bug discovered in widely used Linux utility curl, and patches already rolled out
10/11/2023🔧 No Patch
CVE-2009-2417
CVSS 7.5high
8/14/2009
CVE-2007-3564
CVSS 7.5high
7/18/2007
CVE-2005-3185
CVSS 7.5high
10/13/2005
CVE-2005-0490
CVSS 8.8high
2/21/2005
Monitor libcurl in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.