Metrics
Affected Vendors & Products
Thu, 26 Jun 2025 16:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Haxx
Haxx curl |
|
CPEs | cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:* | |
Vendors & Products |
Haxx
Haxx curl |
Thu, 26 Jun 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | ||
Vendors & Products |
Haxx
Haxx curl |
Thu, 26 Jun 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Haxx
Haxx curl |
|
CPEs | cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:* | |
Vendors & Products |
Haxx
Haxx curl |
Sat, 31 May 2025 02:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-295 | |
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Wed, 28 May 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
Wed, 28 May 2025 08:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Wed, 28 May 2025 06:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | libcurl accidentally skips the certificate verification for QUIC connections when connecting to a host specified as an IP address in the URL. Therefore, it does not detect impostors or man-in-the-middle attacks. | |
Title | QUIC certificate check skip with wolfSSL | |
References |
|

Status: PUBLISHED
Assigner: curl
Published:
Updated: 2025-05-28T13:58:33.430Z
Reserved: 2025-05-19T06:09:52.737Z
Link: CVE-2025-4947

Updated: 2025-05-28T08:03:56.748Z

Status : Analyzed
Published: 2025-05-28T07:15:24.780
Modified: 2025-06-26T15:08:21.520
Link: CVE-2025-4947
