Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7271
HistoryAug 13, 2018 - 3:00 a.m.

Same Origin Policy Bypass

2018-08-1303:00:56
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.006 Low

EPSS

Percentile

77.8%

libcurl.so is vulnerable to same origin policy bypass. This is due to the libcurl’s cookie parser having no public suffix awareness, which could allow for cookies to be set for arbitrary sites by setting a cookie for a top-level domain.

CPENameOperatorVersion
libcurl.sole4.7.0
libcurl.sole4.7.0