Количество 13
Количество 13
BDU:2025-15593
Уязвимость HTTP-акселератора Varnish Cache, связанная с недостатками обработки HTTP-запросов, позволяющая нарушителю осуществлять атаки с подменой HTTP-запросов
ROS-20251203-06
Уязвимость varnish
CVE-2025-47905
Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.
CVE-2025-47905
Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.
CVE-2025-47905
Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.
CVE-2025-47905
Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterpris ...
RLSA-2025:8550
Important: varnish security update
RLSA-2025:8337
Important: varnish security update
RLSA-2025:8336
Important: varnish:6 security update
GHSA-cvpp-rmjx-5x2m
Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.
ELSA-2025-8550
ELSA-2025-8550: varnish security update (IMPORTANT)
ELSA-2025-8337
ELSA-2025-8337: varnish security update (IMPORTANT)
ELSA-2025-8336
ELSA-2025-8336: varnish:6 security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2025-15593 Уязвимость HTTP-акселератора Varnish Cache, связанная с недостатками обработки HTTP-запросов, позволяющая нарушителю осуществлять атаки с подменой HTTP-запросов | CVSS3: 5.4 | 0% Низкий | 7 месяцев назад | |
ROS-20251203-06 Уязвимость varnish | CVSS3: 5.4 | 0% Низкий | 15 дней назад | |
CVE-2025-47905 Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries. | CVSS3: 5.4 | 0% Низкий | 7 месяцев назад | |
CVE-2025-47905 Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries. | CVSS3: 8.1 | 0% Низкий | 7 месяцев назад | |
CVE-2025-47905 Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries. | CVSS3: 5.4 | 0% Низкий | 7 месяцев назад | |
CVE-2025-47905 Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterpris ... | CVSS3: 5.4 | 0% Низкий | 7 месяцев назад | |
RLSA-2025:8550 Important: varnish security update | 0% Низкий | 3 месяца назад | ||
RLSA-2025:8337 Important: varnish security update | 0% Низкий | 3 месяца назад | ||
RLSA-2025:8336 Important: varnish:6 security update | 0% Низкий | 5 месяцев назад | ||
GHSA-cvpp-rmjx-5x2m Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries. | CVSS3: 5.4 | 0% Низкий | 7 месяцев назад | |
ELSA-2025-8550 ELSA-2025-8550: varnish security update (IMPORTANT) | 6 месяцев назад | |||
ELSA-2025-8337 ELSA-2025-8337: varnish security update (IMPORTANT) | 7 месяцев назад | |||
ELSA-2025-8336 ELSA-2025-8336: varnish:6 security update (IMPORTANT) | 7 месяцев назад |
Уязвимостей на страницу