CVE-2025-0167 is a low-severity vulnerability affecting curl, specifically when used by products like haxx and NetApp. It allows for potential password leakage if curl is configured to use a .netrc file for credentials, follow HTTP redirects, and the .netrc file contains a specific "default" entry. The attack requires user interaction (UI:R) and has high attack complexity (AC:H), with a CVSS score of 3.4. There is no evidence of active exploitation, publicly available exploit code, or significant community discussion, though it has garnered minimal media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 7.76.0, < 8.12.0CPE matchmatch criteria | cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netapp:h700s_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netapp:h615c_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netapp:h610s_firmware:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:netapp:h610c_firmware:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.2 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.
curl vulnerabilities
Mar 11, 2026Third-Party Package Updates in Splunk Enterprise - November 2025
Nov 12, 2025Third-Party Package Updates in Splunk Enterprise - July 2025
Jul 7, 2025netrc and default credential leak
Feb 11, 2025netrc and default credential leak
Feb 5, 2025