CVE Tools

curl Project Pauses Vulnerability Reports for “Summer of Bliss”

Daily CyberSecurity (securityonline.info)By Do Son

Advisorycurl

Our summary

The lead maintainer of the curl project announced a temporary halt in accepting vulnerability reports for the period July 1, 2026 (00:00 CEST) through August 3, 2026 (09:00 CEST), including submissions via HackerOne or email. The pause is intended as a scheduled rest rather than a response to a security incident, and it also shifts the planned release of version 8.22.0 to September 2, 2026. While urgent issues may still be handled earlier for companies with paid support contracts, other reports will be deferred, which matters for organizations relying on fast disclosure handling.

Read at Daily CyberSecurity (securityonline.info)

Daily CyberSecurity (securityonline.info) publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store