Total vulnerabilities in the database
An issue was discovered in Varnish Cache 7.x before 7.1.2 and 7.2.x before 7.2.1. A request smuggling attack can be performed on Varnish Cache servers by requesting that certain headers are made hop-by-hop, preventing the Varnish Cache servers from forwarding critical headers to the backend.
Software | From | Fixed in |
---|---|---|
varnish_cache_project / varnish_cache | 7.2.0 | 7.2.0.x |
varnish_cache_project / varnish_cache | 7.0.0 | 7.1.2 |
fedoraproject / fedora | 35 | 35.x |
fedoraproject / fedora | 36 | 36.x |
fedoraproject / fedora | 37 | 37.x |