<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <title>CVE Daily – Varnish (High+Critical)</title>
  <link>https://cvedaily.com/pages/tags/varnish.html</link>
  <atom:link href="https://cvedaily.com/feed-tags/varnish-severe.xml" rel="self" type="application/rss+xml"/>
  <description>CVE Daily – Varnish (High+Critical)</description>
  <language>en</language>
  <lastBuildDate>Wed, 03 Jun 2026 21:26:30 +0000</lastBuildDate>
  <item>
    <title>[High] CVE-2025-58807 – Cross-Site Request Forgery (CSRF) vulnerability in Dsingh Purge Varnish Cache pu...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-58807</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-58807</guid>
    <pubDate>Fri, 05 Sep 2025 14:15:51 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-58807</strong></p>
  <p>Cross-Site Request Forgery (CSRF) vulnerability in Dsingh Purge Varnish Cache purge-varnish allows Stored XSS.This issue affects Purge Varnish Cache: from n/a through <= 2.6.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-58807">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2025-31616 – Cross-Site Request Forgery (CSRF) vulnerability in AdminGeekZ Varnish WordPress ...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2025-31616</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2025-31616</guid>
    <pubDate>Mon, 31 Mar 2025 13:15:55 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2025-31616</strong></p>
  <p>Cross-Site Request Forgery (CSRF) vulnerability in AdminGeekZ Varnish WordPress varnish-wp allows Cross Site Request Forgery.This issue affects Varnish WordPress: from n/a through <= 1.7.</p>
  <p><strong>CVSS:</strong> 7.1 · <strong>CWE:</strong> CWE-352</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2025-31616">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2024-30156 – Varnish Cache before 7.3.2 and 7.4.x before 7.4.3 (and before 6.0.13 LTS), and V...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2024-30156</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2024-30156</guid>
    <pubDate>Sun, 24 Mar 2024 01:15:45 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2024-30156</strong></p>
  <p>Varnish Cache before 7.3.2 and 7.4.x before 7.4.3 (and before 6.0.13 LTS), and Varnish Enterprise 6 before 6.0.12r6, allows credits exhaustion for an HTTP/2 connection control flow window, aka a Broke Window Attack.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-770</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2024-30156">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-45060 – An HTTP Request Forgery issue was discovered in Varnish Cache 5.x and 6.x before...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-45060</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-45060</guid>
    <pubDate>Wed, 09 Nov 2022 06:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-45060</strong></p>
  <p>An HTTP Request Forgery issue was discovered in Varnish Cache 5.x and 6.x before 6.0.11, 7.x before 7.1.2, and 7.2.x before 7.2.1. An attacker may introduce characters through HTTP/2 pseudo-headers that are invalid in the context of an HTTP/1 request line, causing the Varnish server to produce invalid HTTP/1 requests to the backend. This could, in turn, be used to exploit vulnerabilities in a ser…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-45060">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-45059 – An issue was discovered in Varnish Cache 7.x before 7.1.2 and 7.2.x before 7.2.1...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-45059</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-45059</guid>
    <pubDate>Wed, 09 Nov 2022 06:15:09 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-45059</strong></p>
  <p>An issue was discovered in Varnish Cache 7.x before 7.1.2 and 7.2.x before 7.2.1. A request smuggling attack can be performed on Varnish Cache servers by requesting that certain headers are made hop-by-hop, preventing the Varnish Cache servers from forwarding critical headers to the backend.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-45059">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2022-38150 – In Varnish Cache 7.0.0, 7.0.1, 7.0.2, and 7.1.0, it is possible to cause the Var...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-38150</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-38150</guid>
    <pubDate>Thu, 11 Aug 2022 01:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2022-38150</strong></p>
  <p>In Varnish Cache 7.0.0, 7.0.1, 7.0.2, and 7.1.0, it is possible to cause the Varnish Server to assert and automatically restart through forged HTTP/1 backend responses. An attack uses a crafted reason phrase of the backend response status line. This is fixed in 7.0.3 and 7.1.1.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-400</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-38150">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2022-23959 – In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2022-23959</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2022-23959</guid>
    <pubDate>Wed, 26 Jan 2022 01:15:07 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2022-23959</strong></p>
  <p>In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, request smuggling can occur for HTTP/1 connections.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-444</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2022-23959">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2020-11653 – An issue was discovered in Varnish Cache before 6.0.6 LTS, 6.1.x and 6.2.x befor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2020-11653</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2020-11653</guid>
    <pubDate>Wed, 08 Apr 2020 23:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2020-11653</strong></p>
  <p>An issue was discovered in Varnish Cache before 6.0.6 LTS, 6.1.x and 6.2.x before 6.2.3, and 6.3.x before 6.3.2. It occurs when communication with a TLS termination proxy uses PROXY version 2. There can be an assertion failure and daemon restart, which causes a performance loss.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-617</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2020-11653">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-20637 – An issue was discovered in Varnish Cache before 6.0.5 LTS, 6.1.x and 6.2.x befor...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-20637</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-20637</guid>
    <pubDate>Wed, 08 Apr 2020 23:15:12 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-20637</strong></p>
  <p>An issue was discovered in Varnish Cache before 6.0.5 LTS, 6.1.x and 6.2.x before 6.2.2, and 6.3.x before 6.3.1. It does not clear a pointer between the handling of one client request and the next request within the same connection. This sometimes causes information to be disclosed from the connection workspace, such as data structures associated with previous requests within this connection or V…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-212</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-20637">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2013-4090 – Varnish HTTP cache before 3.0.4: ACL bug</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2013-4090</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2013-4090</guid>
    <pubDate>Wed, 12 Feb 2020 16:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2013-4090</strong></p>
  <p>Varnish HTTP cache before 3.0.4: ACL bug</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2013-4090">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2019-15892 – An issue was discovered in Varnish Cache before 6.0.4 LTS, and 6.1.x and 6.2.x b...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2019-15892</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2019-15892</guid>
    <pubDate>Tue, 03 Sep 2019 21:15:10 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2019-15892</strong></p>
  <p>An issue was discovered in Varnish Cache before 6.0.4 LTS, and 6.1.x and 6.2.x before 6.2.1. An HTTP/1 parsing failure allows a remote attacker to trigger an assert by sending crafted HTTP/1 requests. The assert will cause an automatic restart with a clean cache, which makes it a Denial of Service attack.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-617</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2019-15892">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2017-8807 – vbf_stp_error in bin/varnishd/cache/cache_fetch.c in Varnish HTTP Cache 4.1.x be...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-8807</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-8807</guid>
    <pubDate>Thu, 16 Nov 2017 02:29:05 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2017-8807</strong></p>
  <p>vbf_stp_error in bin/varnishd/cache/cache_fetch.c in Varnish HTTP Cache 4.1.x before 4.1.9 and 5.x before 5.2.1 allows remote attackers to obtain sensitive information from process memory because a VFP_GetStorage buffer is larger than intended in certain circumstances involving -sfile Stevedore transient objects.</p>
  <p><strong>CVSS:</strong> 9.1 · <strong>CWE:</strong> CWE-119</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-8807">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2017-12425 – An issue was discovered in Varnish HTTP Cache 4.0.1 through 4.0.4, 4.1.0 through...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2017-12425</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2017-12425</guid>
    <pubDate>Fri, 04 Aug 2017 09:29:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2017-12425</strong></p>
  <p>An issue was discovered in Varnish HTTP Cache 4.0.1 through 4.0.4, 4.1.0 through 4.1.7, 5.0.0, and 5.1.0 through 5.1.2. A wrong if statement in the varnishd source code means that particular invalid requests from the client can trigger an assert, related to an Integer Overflow. This causes the varnishd worker process to abort and restart, losing the cached contents in the process. An attacker can…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-190</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2017-12425">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2015-8852 – Varnish 3.x before 3.0.7, when used in certain stacked installations, allows rem...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2015-8852</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2015-8852</guid>
    <pubDate>Mon, 25 Apr 2016 14:59:01 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2015-8852</strong></p>
  <p>Varnish 3.x before 3.0.7, when used in certain stacked installations, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a header line terminated by a \r (carriage return) character in conjunction with multiple Content-Length headers in an HTTP request.</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> N/A</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2015-8852">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[High] CVE-2009-2936 – The Command Line Interface (aka Server CLI or administration interface) in the m...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2009-2936</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2009-2936</guid>
    <pubDate>Mon, 05 Apr 2010 16:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk high">High</span> CVE-2009-2936</strong></p>
  <p>The Command Line Interface (aka Server CLI or administration interface) in the master process in the reverse proxy server in Varnish before 2.1.0 does not require authentication for commands received through a TCP port, which allows remote attackers to (1) execute arbitrary code via a vcl.inline directive that provides a VCL configuration file containing inline C code; (2) change the ownership of…</p>
  <p><strong>CVSS:</strong> 7.5 · <strong>CWE:</strong> CWE-287</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-2936">View on NVD</a></p>
]]>
    </description>
  </item>
  <item>
    <title>[Critical] CVE-2009-4488 – Varnish 2.0.6 writes data to a log file without sanitizing non-printable charact...</title>
    <link>https://nvd.nist.gov/vuln/detail/CVE-2009-4488</link>
    <guid isPermaLink="true">https://nvd.nist.gov/vuln/detail/CVE-2009-4488</guid>
    <pubDate>Wed, 13 Jan 2010 20:30:00 +0000</pubDate>
    <description>
<![CDATA[
  <p><strong><span class="badge risk critical">Critical</span> CVE-2009-4488</strong></p>
  <p>Varnish 2.0.6 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to modify a window's title, or possibly execute arbitrary commands or overwrite files, via an HTTP request containing an escape sequence for a terminal emulator.  NOTE: the vendor disputes the significance of this report, stating that "This is not a security problem in Varnish o…</p>
  <p><strong>CVSS:</strong> 9.8 · <strong>CWE:</strong> CWE-20</p>
  <p><a href="https://nvd.nist.gov/vuln/detail/CVE-2009-4488">View on NVD</a></p>
]]>
    </description>
  </item>
</channel>
</rss>
