CVE-2025-14524Patch(haxx / curl)

LOWCVSS 5.3 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch haxx curl systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

When an OAuth2 bearer token is used for an HTTP(S) transfer, and that transfer performs a cross-protocol redirect to a second URL that uses an IMAP, LDAP, POP3 or SMTP scheme, curl might wrongly pass on the bearer token to the new target host.

0.5/ 10 priority

Sources & remediation

Vendor / third-party advisories
Weakness type (CWE)
CWE-522CWE-601

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • curl

Threat summary

  • Patch or workaround signal is available
  • 4 mentions across 4 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 3d ago at 1 mentions (2026-02-19); latest day: 1
  • 4 total mentions across 4 days

Affected systems

Vendors
Products
curl

Deep dive

Activity timeline4 mentions / 4d
00111Mentions · 2026-02-19: 1Mentions · 2026-03-13: 1Mentions · 2026-03-14: 1Mentions · 2026-03-15: 1Patch / Workaround · 2026-03-14: 1Technical Details · 2026-02-19: 102-1903-1303-1403-15
Signal classification3 categories
Patch
250.0%
Disclosure
125.0%
General
125.0%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-02-191
Disclosure1
2026-03-131
Patch1
2026-03-141
Patch1
2026-03-151
General1
Full discourse4 posts
  • Lambda Watchdog@LambdaWatchdog
    General

    🔍 Lambda Watchdog detected that CVE-2025-14524 is no longer present in latest AWS Lambda base image scans. https://github.com/aws/aws-lambda-base-images/issues/410 #AWS #Lambda #Security #CVE #DevOps #SecOps

    Post summary

    The tweet notes that CVE-2025-14524 has been removed from the latest AWS Lambda base images, but provides no technical details, PoC, or evidence of exploitation.

    00000139
    32 followersView on X
  • Lambda Watchdog@LambdaWatchdog
    Patch

    🔍 Lambda Watchdog detected that CVE-2025-14524 is no longer present in latest AWS Lambda base image scans. https://github.com/aws/aws-lambda-base-images/issues/410 #AWS #Lambda #Security #CVE #DevOps #SecOps

    Post summary

    Lambda Watchdog reports that CVE-2025-14524 has been removed from the latest AWS Lambda base images, indicating the vulnerability has been effectively patched.

    00000135
    31 followersView on X
  • Lambda Watchdog@LambdaWatchdog
    Patch

    🔍 Lambda Watchdog detected that CVE-2025-14524 is no longer present in latest AWS Lambda base image scans. https://github.com/aws/aws-lambda-base-images/issues/410 #AWS #Lambda #Security #CVE #DevOps #SecOps

    Post summary

    The tweet indicates that CVE-2025-14524 is no longer detected in the latest AWS Lambda base image scans, suggesting the issue has been addressed or removed from the images.

    00000119
    31 followersView on X
  • Lambda Watchdog@LambdaWatchdog
    Disclosure

    🚨 New MEDIUM CVE detected in AWS Lambda 🚨 CVE-2025-14524 impacts curl-minimal in 40 Lambda base images. Details: https://github.com/aws/aws-lambda-base-images/issues/410 More: https://lambdawatchdog.com/ #AWS #Lambda #CVE #CloudSecurity #Serverless

    Post summary

    A new medium‑severity CVE-2025-14524 affecting curl‑minimal in AWS Lambda base images has been reported, with no PoC, exploit, or patch details provided.

    0000036
    30 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apphaxxcurl---

Explore more