Uncurl Project maintains a specialized tool focused on converting curl commands into HTTP client code, serving a narrow but technically engaged user base. The observed vulnerability signal centers on cross-site request forgery, a weakness class relevant to how the tool processes and converts user-supplied input. Current vulnerability counts and exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Uncurl Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-6651HIGH In the uncurl_ws_accept function in uncurl.c in uncurl before 0.07, as used in Parsec before 140-3, insufficient Origin header validation (accepting an arbitrary substring match) f | Feb 5, 2018 | 8.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Uncurl Project.
Media articles that mention a CVE ID that affects a product developed by Uncurl Project — matched by CVE ID, not by vendor name.