Analysis and contextual insights are available on OpenCVE Cloud.
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2920-1 | varnish security update |
Debian DSA |
DSA-5088-1 | varnish security update |
EUVD |
EUVD-2022-28875 | In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, request smuggling can occur for HTTP/1 connections. |
Ubuntu USN |
USN-5474-1 | Varnish Cache vulnerabilities |
No history.
Subscriptions
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T03:59:23.263Z
Reserved: 2022-01-26T00:00:00.000Z
Link: CVE-2022-23959
No data.
Status : Modified
Published: 2022-01-26T01:15:07.900
Modified: 2026-06-17T04:31:03.640
Link: CVE-2022-23959
OpenCVE Enrichment
No data.
-
CWE-444
Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')
Debian DLA
Debian DSA
EUVD
Ubuntu USN