CVE-2026-6429
MEDIUM
NVD
CVSS Score
5.3
Severity
MEDIUM
Published
May 13, 2026
Vendor
unknown
Description
When asked to both use a `.netrc` file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.