Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.8

CVE-2026-34475: Varnish Cache: Unchecked URLs Can Bypass Security and Cache Data

CVE-2026-34475
Summary

Varnish Cache versions before 8.0.1 and Varnish Enterprise versions before 6.0.16r12 may allow an attacker to bypass security checks and cache sensitive data. This could lead to unauthorized access to your website or compromised cache data. Update to the latest version to fix this issue.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versions
varnish-software varnish_enterprise <= 6.0.15
6.0.16
cpe:2.3:a:varnish-software:varnish_enterprise:*:*:*:*:*:*:*:*
vinyl-cache vinyl_cache < 8.0.1
cpe:2.3:a:vinyl-cache:vinyl_cache:*:*:*:*:*:*:*:*
Original title
Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in certain unchecked req.url scenarios, mishandle URLs with a path of / for HTTP/1.1, potentially leading to cache poisoning or a...
Original description
Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in certain unchecked req.url scenarios, mishandle URLs with a path of / for HTTP/1.1, potentially leading to cache poisoning or authentication bypass.
nvd CVSS3.1 5.4
Vulnerability type
CWE-180
Published: 27 Mar 2026 · Updated: 27 Jun 2026 · First seen: 27 Mar 2026