Back to search
CVE-2026-3784
Published: Mar 11, 2026
Modified: Jun 2, 2026
PUBLISHED
Description
curl would wrongly reuse an existing HTTP proxy connection doing CONNECT to a server, even if the new request uses different credentials for the HTTP proxy. The proper behavior is to create or use a separate connection.
| Vendor | Product | Versions |
|---|---|---|
curl | curl | affected 8.18.0 - <= 8.18.0affected 8.17.0 - <= 8.17.0affected 8.16.0 - <= 8.16.0affected 8.15.0 - <= 8.15.0affected 8.14.1 - <= 8.14.1+186 more versions |
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now