
🔐 curl CVE-2026-11856: critical Digest auth state leak. Credentials from one HTTP origin silently reused against a different host on the next transfer. CVSS 9.8, patch available now. https://secalerts.co/vulnerability/CVE-2026-11856?utm_campaign=x https://t.co/xxdMNeBQAq
Post summary
The post discloses a critical Digest authentication state leak (CVE‑2026‑11856) and informs readers that a vendor patch is now available.

