Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fcqv-r8cv-f88h

Опубликовано: 08 фев. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, request smuggling can occur for HTTP/1 connections.

In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, request smuggling can occur for HTTP/1 connections.

EPSS

Процентиль: 78%
0.01973
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-444

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 4 лет назад

In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, request smuggling can occur for HTTP/1 connections.

CVSS3: 9.1
redhat
больше 4 лет назад

In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, request smuggling can occur for HTTP/1 connections.

CVSS3: 9.1
nvd
больше 4 лет назад

In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, request smuggling can occur for HTTP/1 connections.

CVSS3: 9.1
debian
больше 4 лет назад

In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 ...

rocky
больше 4 лет назад

Important: varnish:6 security update

EPSS

Процентиль: 78%
0.01973
Низкий

9.1 Critical

CVSS3

Дефекты

CWE-444