Curl CVE has security community on edge as patch drops
Lead developer Daniel Stenberg has released an upgraded version of curl, a widely-used tool for transferring files, to address a high-severity open-source vulnerability, potentially comparable to Log4j. The release of curl 8.4.0 fixes a vulnerability that could lead to a heap-based buffer overflow in the SOCKS5 proxy handshake.