Security
Loading…

CVE-2026-82208

UNKNOWN
Description

With the wolfSSL backend, when CA caching is enabled and an `CURLOPT_SSL_CTX_FUNCTION` callback replaces the trust store, libcurl can silently reinstall the cached store after the callback returns. A certificate trusted by the cached store but rejected by the callback-selected store is then incorrectly accepted.

Timeline
Published:September 6th, 2026 6:17 PM
Last modified:September 6th, 2026 6:17 PM
CVSS Scoring

No CVSS v3 score available

Source: NIST NVD · Data may lag official sources by up to one minute