---
format: "aidr-story-markdown/v1"
id: "b9a7dc4a09e4b4e431522be58e30622ed92ea150181380a6d9c8c81e7925a3b8"
canonical_url: "https://aidr.today/b9a7dc4a?lang=en"
title: "Six curl CVEs after OpenAI and Anthropic came back with zero"
lang: "en"
requested_lang: "en"
available_langs: ["en","vi"]
translation_fallback: null
fallback_fields: []
published_at: "2026-09-02T13:43:14.000Z"
category: null
topics: ["openai","anthropic","security","vulnerability"]
source_urls: ["https://aisle.com/blog/aisle-discovered-six-curl-cves-after-openai-and-anthropic-found-zero","https://news.ycombinator.com/item?id=49536114"]
summary: "After frontier AI systems came up empty, AISLE surfaced six CVEs in curl, one of the world's most audited codebases. Its maintainers patched all six."
---

# Six curl CVEs after OpenAI and Anthropic came back with zero

> [Open the canonical story](<https://aidr.today/b9a7dc4a?lang=en>)

**Published:** 2026-09-02T13:43:14.000Z
**Topics:** openai, anthropic, security, vulnerability

## Summary

After frontier AI systems came up empty, AISLE surfaced six CVEs in curl, one of the world's most audited codebases\. Its maintainers patched all six\.

## Sources

- [Story source](<https://aisle.com/blog/aisle-discovered-six-curl-cves-after-openai-and-anthropic-found-zero>)
- [Discussion](<https://news.ycombinator.com/item?id=49536114>)

