Varnish Cache
Vendor:
First CVE: Aug 4, 2017 · Active for 8 years
12
Total CVEs
More Total CVEs than 90% of tracked products
1.7
Avg CVEs / Year
Higher CVE frequency than 60% of tracked products
7.3
Avg CVSS
Higher Avg CVSS than 48% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Varnish Cache over time
Volume of CVEsAvg CVSS Base Score
First CVE
Aug 4, 2017
8 years ago
Most Recent CVE
Apr 12, 2026
103 days ago
CVE Severity & Scoring
Varnish Cache12 CVEs
25%
58%
17%
All CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local0 (0.0%)
Network12 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low10 (83.3%)
High2 (16.7%)
Unknown0 (0.0%)
User Interaction
None12 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None12 (100.0%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (12 CVEs).
12 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-34475CRITICAL Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in certain unchecked req.url scenarios, mishandle URLs with a path of / for HTTP/1.1, potentially leading to cac | Mar 27, 2026 | 9.8 | 35 | NO | NO |
CVE-2022-23959CRITICAL In Varnish Cache before 6.6.2 and 7.x before 7.0.2, Varnish Cache 6.0 LTS before 6.0.10, and and Varnish Enterprise (Cache Plus) 4.1.x before 4.1.11r6 and 6.0.x before 6.0.9r4, req | Jan 26, 2022 | 9.1 | 31 | NO | NO |
CVE-2026-40394HIGH Varnish Cache 9 before 9.0.1 and Varnish Enterprise before 6.0.16r11 allows a "workspace overflow" denial of service (daemon panic) for certain amounts of prefetched data. The setu | Apr 12, 2026 | 7.5 | 29 | NO | NO |
CVE-2026-40396HIGH Varnish Cache 9 before 9.0.1 allows a "workspace overflow" denial of service (daemon panic) after timeout_linger. A malicious client could send an HTTP/1 request, wait long enough | Apr 12, 2026 | 7.5 | 28 | NO | NO |
CVE-2019-15892HIGH An issue was discovered in Varnish Cache before 6.0.4 LTS, and 6.1.x and 6.2.x before 6.2.1. An HTTP/1 parsing failure allows a remote attacker to trigger an assert by sending craf | Sep 3, 2019 | 7.5 | 27 | NO | NO |
CVE-2022-45060HIGH An HTTP Request Forgery issue was discovered in Varnish Cache 5.x and 6.x before 6.0.11, 7.x before 7.1.2, and 7.2.x before 7.2.1. An attacker may introduce characters through HTTP | Nov 9, 2022 | 7.5 | 25 | NO | NO |
CVE-2019-20637HIGH An issue was discovered in Varnish Cache before 6.0.5 LTS, 6.1.x and 6.2.x before 6.2.2, and 6.3.x before 6.3.1. It does not clear a pointer between the handling of one client requ | Apr 8, 2020 | 7.5 | 25 | NO | NO |
CVE-2017-12425HIGH An issue was discovered in Varnish HTTP Cache 4.0.1 through 4.0.4, 4.1.0 through 4.1.7, 5.0.0, and 5.1.0 through 5.1.2. A wrong if statement in the varnishd source code means that | Aug 4, 2017 | 7.5 | 25 | NO | NO |
CVE-2021-36740MEDIUM Varnish Cache, with HTTP/2 enabled, allows request smuggling and VCL authorization bypass via a large Content-Length header for a POST request. This affects Varnish Enterprise 6.0. | Jul 14, 2021 | 6.5 | 23 | NO | NO |
CVE-2020-11653HIGH An issue was discovered in Varnish Cache before 6.0.6 LTS, 6.1.x and 6.2.x before 6.2.3, and 6.3.x before 6.3.2. It occurs when communication with a TLS termination proxy uses PROX | Apr 8, 2020 | 7.5 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (12 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (12 CVEs).
Media Mentions
Signals from CVEs in this product scope (12 CVEs).
Top CNAs Publishing CVEs For Varnish Cache
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 4.1.7 | 1 | 7.5 | 2.4% | 0 | 0 |
| 4.1.6 | 1 | 7.5 | 2.4% | 0 | 0 |
| 4.1.5 | 1 | 7.5 | 2.4% | 0 | 0 |
| 4.1.4 | 1 | 7.5 | 2.4% | 0 | 0 |
| 4.1.3 | 1 | 7.5 | 2.4% | 0 | 0 |
| 4.1.2 | 1 | 7.5 | 2.4% | 0 | 0 |
| 4.1.1 | 1 | 7.5 | 2.4% | 0 | 0 |
| 4.1.0 | 1 | 7.5 | 2.4% | 0 | 0 |