PT-2026-35896 · Git · Curl

Published

2026-04-29

·

Updated

2026-04-29

·

CVE-2026-6429

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
When asked to both use a .netrc file for credentials and to follow HTTP redirects, libcurl could leak the password used for the first host to the followed-to host under certain circumstances.

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2026-6429

Affected Products

Curl