
curl fixes OAuth bearer token leak on redirects when using .netrc (CVE-2026-3783)
curl/libcurl disclosed and patched a redirect edge case that could leak OAuth2 bearer tokens to a redirected hostname when .netrc matches, fixed in 8.19.0.
NewsOpen SourceWeb Security
11 Mar 2026