CVE-2026-82208
published 2026-09-06CVE-2026-82208: With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can silently reinstall the…
PriorityP342high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
0.43%
36.2th percentile
With the wolfSSL backend, when CA caching is enabled and an
`CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can
silently reinstall the cached store after the callback returns. A certificate
trusted by the cached store but rejected by the callback-selected store is
then incorrectly accepted.
Affected
23 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | — | — |
| curl | curl | >= 0f2876b2c33f6784a27b6f7345bd8cd95b46352a < ed0338befd1d865a8ea1fbaa90013a096dedd07a | ed0338befd1d865a8ea1fbaa90013a096dedd07a |
| curl | curl | >= 8.15.0 < 8.16.1 | 8.16.1 |
| curl | curl | >= 8.17.0 < 8.20.1 | 8.20.1 |
| curl | curl | >= 8.21.0 < 8.22.0 | 8.22.0 |
| curl | curl | >= 8.9.1 < 8.14.2 | 8.14.2 |
| haxx | curl | >= 8.9.1 < 8.22.0 | 8.22.0 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can silently reinstall the cached store after the callback returns.
ghsa_unreviewed·2026-09-06
CVE-2026-82208 With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can silently reinstall the cached store after the callback returns.
With the wolfSSL backend, when CA caching is enabled and an
`CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can
silently reinstall the cached store after the callback returns. A certificate
trusted by the cached store but rejected by the callback-selected store is
then incorrectly accepted.
VulDB
curl libcurl up to 8.9.1 CA caching certificate validation (EUVD-2026-72152)
vuldb·2026-09-06
CVE-2026-82208 [LOW] curl libcurl up to 8.9.1 CA caching certificate validation (EUVD-2026-72152)
A vulnerability marked as problematic has been reported in curl libcurl up to 8.9.1. This affects an unknown function of the component CA caching. The manipulation leads to improper certificate validation.
This vulnerability is listed as CVE-2026-82208. The attack may be initiated remotely. There is no available exploit.
No detection rules found.
No public exploits indexed.
2026-09-06
Published