Skip to content
Noroxi

varnish-cache records

7 published records for vendor varnish-cache.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
85.7%
Median publish → KEV
No record has entered KEV

All records

7 records
  • CVE-2017-8807
    37Monitor

    vbf_stp_error in bin/varnishd/cache/cache_fetch.c in Varnish HTTP Cache 4.1.x before 4.1.9 and 5.x before 5.2.1 allows remote attackers to o

    CriticalCVSS 9.1No exploitEPSS 4%

    varnish-cache · varnishNov 15, 2017

  • An issue was discovered in Varnish HTTP Cache 4.0.1 through 4.0.4, 4.1.0 through 4.1.7, 5.0.0, and 5.1.0 through 5.1.2.

    HighCVSS 7.5No exploitEPSS 2%

    varnish-cache · varnishAug 4, 2017

  • An issue was discovered in Varnish Cache before 6.0.6 LTS, 6.1.x and 6.2.x before 6.2.3, and 6.3.x before 6.3.2.

    HighCVSS 7.5No exploitEPSS 2%

    varnish-cache · varnish cacheApr 8, 2020

  • An issue was discovered in Varnish Cache before 6.0.5 LTS, 6.1.x and 6.2.x before 6.2.2, and 6.3.x before 6.3.1.

    HighCVSS 7.5No exploitEPSS 2%

    varnish-cache · varnish cacheApr 8, 2020

  • Varnish varnish-modules before 0.17.1 allows remote attackers to cause a denial of service (daemon restart) in some configurations.

    HighCVSS 7.5No exploitEPSS 1%

    varnish-cache · varnish-modulesMar 16, 2021

  • Varnish Cache, with HTTP/2 enabled, allows request smuggling and VCL authorization bypass via a large Content-Length header for a POST reque

    MediumCVSS 6.5No exploitEPSS 2%

    varnish-cache · varnish cacheJul 14, 2021

  • CVE-2013-4484
    21Monitor

    Varnish before 3.0.5 allows remote attackers to cause a denial of service (child-process crash and temporary caching outage) via a GET reque

    MediumCVSS 5.0No exploitEPSS 3%

    varnish-cache · varnishOct 31, 2013