Multiple Vulnerabilities in Curl Affecting Authentication and Credentials
First seen 21 Feb 2026, 11:12 UTC
•
•53
Export
Article Content
Browse articles
Two vulnerabilities in curl have been identified: CVE-2022-22576, which affects versions 7.33.0 to 7.82.0, allowing unauthorized reuse of OAUTH2-authenticated connections, and CVE-2022-27774, affecting versions 4.9 to 7.82.0, which could lead to credential leakage during HTTP(S) redirects. These vulnerabilities impact various SASL-enabled protocols including SMTP(S), IMAP(S), POP3(S), and LDAP(S).
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Timeline
2022-05-26
CVE-2022-22576 published
2022-06-01
CVE-2022-27774 published
2026-02-21
Information published about CVE-2022-22576
2026-02-21
Information published about CVE-2022-27774
More articles in this cluster
Continue Reading
AzCopy Utility Exploited in Ransomware Data Exfiltration Campaigns
Critical SonicWall SMA1000 Vulnerabilities Under Active Exploitation
Critical Unauthenticated RCE Vulnerability in LiteLLM Exploited in the Wild
Lazarus Group Exploits Windows Zero-Day to Target Defense Sector
APT28 Exploits Zimbra Vulnerability in Ongoing Attacks Against Ukraine
Russian Hackers Exploit Zimbra Zero-Day for Espionage Campaign