Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-34475

Опубликовано: 27 мар. 2026
Источник: redhat
CVSS3: 5.4

Описание

Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in certain unchecked req.url scenarios, mishandle URLs with a path of / for HTTP/1.1, potentially leading to cache poisoning or authentication bypass.

A flaw was found in Varnish Cache and Varnish Enterprise. A remote attacker could exploit this vulnerability by sending specially crafted HTTP/1.1 requests with a path of / in the URL. This mishandling of URLs, specifically in unchecked req.url scenarios, could lead to cache poisoning, where an attacker manipulates cached content, or an authentication bypass, allowing unauthorized access.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10redhat-user-workloads/varnish-7-10-0Not affected
Red Hat Enterprise Linux 10redhat-user-workloads/varnish-7-10-1Not affected
Red Hat Enterprise Linux 10varnishFix deferred
Red Hat Enterprise Linux 10varnish-modulesFix deferred
Red Hat Enterprise Linux 8redhat-user-workloads/varnish-6-8-10Not affected
Red Hat Enterprise Linux 8varnish:6/varnishFix deferred
Red Hat Enterprise Linux 8varnish:6/varnish-modulesFix deferred
Red Hat Enterprise Linux 9redhat-user-workloads/varnish-6-9-6Not affected
Red Hat Enterprise Linux 9redhat-user-workloads/varnish-6-9-7Not affected
Red Hat Enterprise Linux 9varnishNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-1286
https://bugzilla.redhat.com/show_bug.cgi?id=2452408Varnish Cache: Varnish Cache and Varnish Enterprise: Cache poisoning and authentication bypass via unchecked URL handling

5.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.4
ubuntu
5 месяцев назад

Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in certain unchecked req.url scenarios, mishandle URLs with a path of / for HTTP/1.1, potentially leading to cache poisoning or authentication bypass.

CVSS3: 5.4
nvd
5 месяцев назад

Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in certain unchecked req.url scenarios, mishandle URLs with a path of / for HTTP/1.1, potentially leading to cache poisoning or authentication bypass.

CVSS3: 5.4
debian
5 месяцев назад

Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in ...

CVSS3: 5.4
github
5 месяцев назад

Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in certain unchecked req.url scenarios, mishandle URLs with a path of / for HTTP/1.1, potentially leading to cache poisoning or authentication bypass.

5.4 Medium

CVSS3