CVE-2026-8925
CVE Details
Visit the official vulnerability details page for CVE-2026-8925 to learn more.
Initial Publication
07/03/2026
Last Update
07/07/2026
Third Party Dependency
curl-minimal
NIST CVE Summary
The curl logic that works with SASL authentication could end up cleaning up the GSASL context twice without clearing the pointer in between, making it `free()` the same pointer twice.
CVE Severity
Our Official Summary
Investigation is ongoing to determine how this vulnerability affects our products.
Status
Analyzed
Affected Products & Versions
| Version | PaletteAI | PaletteAI VerteX |
|---|---|---|
| 1.2.1 | ⚠️ Impacted | ⚠️ Impacted |
| 1.1.8 | ⚠️ Impacted | ⚠️ Impacted |
Revision History
No revisions available.