UNKNOWN NVD
CVE-2026-80231
A flaw in libcurl makes it wrongly reuse an existing HTTPS connection setup for a given hostname even when using a different Native CA Store setting (`CURLSSLOP
A flaw in libcurl makes it wrongly reuse an existing HTTPS connection setup
for a given hostname even when using a different Native CA Store setting
(`CURLSSLOPT_NATIVE_CA`) than when the connection was created.
References
- https://curl.se/docs/CVE-2026-80231.html
- https://curl.se/docs/CVE-2026-80231.json
- https://hackerone.com/reports/3969368
This unknown severity vulnerability was published on 2026-09-06 via NVD.
vulnfeed aggregates 9982 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.