Home
MEDIUM: 5.4 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:L/A:NDefault status
unaffected
Any version before 6.0.17 LTS
affected
7.0.0 (custom) before 8.0.1
affected
Description
Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in certain unchecked req.url scenarios, mishandle URLs with a path of / for HTTP/1.1, potentially leading to cache poisoning or authentication bypass.
Problem types
CWE-180 Incorrect Behavior Order: Validate Before Canonicalize
Product status
Any version before 6.0.17 LTS
7.0.0 (custom) before 8.0.1
References
vinyl-cache.org/security/VSV00018.html