Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in certain unchecked req.url scenarios, mishandle URLs with a path of / for HTTP/1.1, potentially leading to cache poisoning or authentication bypass.
References
| Link | Resource |
|---|---|
| https://vinyl-cache.org/security/VSV00018.html | Mitigation Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
No history.
Information
Published : 2026-03-27 20:16
Updated : 2026-06-17 10:39
NVD link : CVE-2026-34475
Mitre link : CVE-2026-34475
CVE.ORG link : CVE-2026-34475
JSON object : View
Products Affected
varnish-software
- varnish_enterprise
vinyl-cache
- vinyl_cache
CWE
CWE-180
Incorrect Behavior Order: Validate Before Canonicalize
