CVE-2026-8286
curl
A vulnerability exists where a new transfer that uses STARTTLS to upgrade the connection might reuse an existing live connection even though the TLS configuration mismatches so it should not.
- CVSS
- 8.1
- EPSS
- 0.52% 40.6% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.03