Known vulnerabilities in rh-varnish6-varnish (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:rh-varnish6-varnish_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 6
Public exploits: 1
Known exploited (KEV): 1
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting rh-varnish6-varnish (Red Hat package) rh-varnish6-varnish (Red Hat package) is affected by 6 known vulnerabilities: 1 high, 4 medium, 1 low Critical High Medium Low

Vulnerabilities (6)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU88221 - Resource exhaustion
CVE-2024-30156
CWE-400 Medium
No
No
6.0.13-1.el7 09.04.2024 SB2024040916
SB2024040925
SB2024040926
and 10 more
#VU81728 - Resource exhaustion
CVE-2023-44487
CWE-400 High
Available
Exploited
6.0.8-2.el7.3 10.10.2023 SB2023101023
SB2023101024
SB2023101037
and 650 more
#VU69128 - Server-Side Request Forgery (SSRF)
CVE-2022-45060
CWE-918 Medium
No
No
6.0.8-2.el7.2 08.11.2022 SB2022110886
SB2022112827
SB2022112828
and 17 more
#VU60291 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2022-23959
CWE-444 Medium
No
No
6.0.8-2.el7.1 03.02.2022 SB2022020331
SB2022020415
SB2022020416
and 14 more
#VU55501 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2021-36740
CWE-444 Medium
No
No
6.0.8-2.el7 02.08.2021 SB2021080215
SB2021080216
SB2021080322
and 10 more
#VU20863 - Reachable Assertion
CVE-2019-15892
CWE-617 Low
No
No
6.0.6-1.el7 04.09.2019 SB2019090422
SB2019090603
SB2019092507
and 9 more