CVE-2020-8286

HIGH7.5EPSS 0.29%
Published: 12/14/2020Modified: 12/3/2025
Also known as:ALPINE-CVE-2020-8286

Description

curl 7.41.0 through 7.73.0 is vulnerable to an improper check for certificate revocation due to insufficient verification of the OCSP response.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

References (2)