CVE-2026-82208
N/A
N/A
Summary
With the wolfSSL backend, when CA caching is enabled and an
CURLOPT_SSL_CTX_FUNCTION callback replaces the trust store, libcurl can
silently reinstall the cached store after the callback returns. A certificate
trusted by the cached store but rejected by the callback-selected store is
then incorrectly accepted.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| curl | curl | 8.21.0 <= 8.21.0 | affected |
| curl | curl | 8.20.0 <= 8.20.0 | affected |
| curl | curl | 8.19.0 <= 8.19.0 | affected |
| curl | curl | 8.18.0 <= 8.18.0 | affected |
| curl | curl | 8.17.0 <= 8.17.0 | affected |
| curl | curl | 8.16.0 <= 8.16.0 | affected |
| curl | curl | 8.15.0 <= 8.15.0 | affected |
| curl | curl | 8.14.1 <= 8.14.1 | affected |
| curl | curl | 8.14.0 <= 8.14.0 | affected |
| curl | curl | 8.13.0 <= 8.13.0 | affected |
| curl | curl | 8.12.1 <= 8.12.1 | affected |
| curl | curl | 8.12.0 <= 8.12.0 | affected |
| curl | curl | 8.11.1 <= 8.11.1 | affected |
| curl | curl | 8.11.0 <= 8.11.0 | affected |
| curl | curl | 8.10.1 <= 8.10.1 | affected |
| curl | curl | 8.10.0 <= 8.10.0 | affected |
| curl | curl | 8.9.1 <= 8.9.1 | affected |
Weaknesses
- CWE-295 Improper Certificate Validation
References
- https://curl.se/docs/CVE-2026-82208.json
- https://curl.se/docs/CVE-2026-82208.html
- https://hackerone.com/reports/3973090
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.