Vulnerabilities (CVE)

Filtered by vendor Curl Subscribe
Filtered by product Wcurl
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-11563 2 Curl, Haxx 2 Wcurl, Curl 2026-02-26 N/A 4.6 MEDIUM
URLs containing percent-encoded slashes (`/` or `\`) can trick wcurl into saving the output file outside of the current directory without the user explicitly asking for it. This flaw only affects the wcurl command line tool.