Curl Vulnerabilities CVE-2022-42915 and CVE-2022-43552 Disclosed
First seen 18 Feb 2026, 15:24 UTC
•
•45
Export
Article Content
Browse articles
Two vulnerabilities in curl have been identified: CVE-2022-42915, a double free issue affecting versions before 7.86.0, and CVE-2022-43552, a use after free vulnerability in versions before 7.87.0. Both vulnerabilities arise when curl attempts to tunnel unsupported protocols through HTTP proxies, which may deny such operations, leading to potential exploitation.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2022-10-29
CVE-2022-42915 published
2023-02-09
CVE-2022-43552 published
2026-02-18
Information published about both vulnerabilities
More articles in this cluster
Continue Reading
Russian Hackers Exploit Zimbra Zero-Day for Espionage Campaign
GhostShell Malware Targets Ukraine's UAV and Defense Supply Chain
Jewelbug APT Group Engages in Espionage and Cryptocurrency Fraud
North Korean Hackers Target Open Source Software Supply Chain via npm Packages
UAT-7810 Expands Malware Arsenal to Enhance ORB Network
Sandworm Hackers Use Fake Job Interviews to Deploy Trojanized VPN Client