Логотип exploitDog
bind:CVE-2025-47905
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-47905

Количество 9

Количество 9

ubuntu логотип

CVE-2025-47905

6 месяцев назад

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
EPSS: Низкий
redhat логотип

CVE-2025-47905

6 месяцев назад

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2025-47905

6 месяцев назад

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
EPSS: Низкий
debian логотип

CVE-2025-47905

6 месяцев назад

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterpris ...

CVSS3: 5.4
EPSS: Низкий
rocky логотип

RLSA-2025:8550

около 1 месяца назад

Important: varnish security update

EPSS: Низкий
github логотип

GHSA-cvpp-rmjx-5x2m

6 месяцев назад

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
EPSS: Низкий
oracle-oval логотип

ELSA-2025-8550

4 месяца назад

ELSA-2025-8550: varnish security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-8337

5 месяцев назад

ELSA-2025-8337: varnish security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2025-8336

5 месяцев назад

ELSA-2025-8336: varnish:6 security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-47905

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2025-47905

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 8.1
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2025-47905

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
0%
Низкий
6 месяцев назад
debian логотип
CVE-2025-47905

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterpris ...

CVSS3: 5.4
0%
Низкий
6 месяцев назад
rocky логотип
RLSA-2025:8550

Important: varnish security update

0%
Низкий
около 1 месяца назад
github логотип
GHSA-cvpp-rmjx-5x2m

Varnish Cache before 7.6.3 and 7.7 before 7.7.1, and Varnish Enterprise before 6.0.13r14, allow client-side desync via HTTP/1 requests, because the product incorrectly permits CRLF to be skipped to delimit chunk boundaries.

CVSS3: 5.4
0%
Низкий
6 месяцев назад
oracle-oval логотип
ELSA-2025-8550

ELSA-2025-8550: varnish security update (IMPORTANT)

4 месяца назад
oracle-oval логотип
ELSA-2025-8337

ELSA-2025-8337: varnish security update (IMPORTANT)

5 месяцев назад
oracle-oval логотип
ELSA-2025-8336

ELSA-2025-8336: varnish:6 security update (IMPORTANT)

5 месяцев назад

Уязвимостей на страницу