A vulnerability classified as critical has been found in cURL up to 8.18.0. Impacted is an unknown function of the component SMB Request Handler. This manipulation causes use after free.

This vulnerability is tracked as CVE-2026-3805. The attack is possible to be carried out remotely. No exploit exists.

It is recommended to upgrade the affected component.