Логотип exploitDog
bind:"CVE-2025-47905"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-47905"

Количество 7

Количество 7

ubuntu логотип

CVE-2025-47905

около 1 месяца назад

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2025-47905

около 1 месяца назад

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2025-47905

около 1 месяца назад

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2025-47905

около 1 месяца назад

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterpris ...

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-cvpp-rmjx-5x2m

около 1 месяца назад

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
EPSS: Низкий
oracle-oval логотип

ELSA-2025-8337

17 дней назад

ELSA-2025-8337: varnish security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-8336

17 дней назад

ELSA-2025-8336: varnish:6 security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-47905

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2025-47905

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 8.1
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2025-47905

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2025-47905

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterpris ...

CVSS3: 5.4
0%
Низкий
около 1 месяца назад
github логотип
GHSA-cvpp-rmjx-5x2m

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
0%
Низкий
около 1 месяца назад
oracle-oval логотип
ELSA-2025-8337

ELSA-2025-8337: varnish security update (IMPORTANT)

17 дней назад
oracle-oval логотип
ELSA-2025-8336

ELSA-2025-8336: varnish:6 security update (IMPORTANT)

17 дней назад

Уязвимостей на страницу