VYPR
Critical severity9.1NVD Advisory· Published Jun 16, 2024· Updated Jun 17, 2026

CVE-2024-38428

CVE-2024-38428

Description

url.c in GNU Wget through 1.24.5 mishandles semicolons in the userinfo subcomponent of a URI, and thus there may be insecure behavior in which data that was supposed to be in the userinfo subcomponent is misinterpreted to be part of the host subcomponent.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

13

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.