Vulnerabilidades em squid-cache
18 resultadosAnálise Vexday
O Squid Cache possui 18 vulnerabilidades registradas, com 3 classificadas como críticas, mas nenhuma está sob exploração ativa conhecida. A fraqueza dominante é leitura fora dos limites de buffer (CWE-125), padrão em software legado de processamento de rede. O risco permanece contido pela ausência de ataques documentados, embora a publicação de 2 novas vulnerabilidades nos últimos 90 dias justifique monitoramento contínuo.
CVE-2024-25617MEDIUMDenial of Service in HTTP Header parser in squid proxyEPSS 88.9%CVE-2023-49285HIGHDenial of Service in HTTP Message Processing in SquidEPSS 88.8%CVE-2024-25111HIGHSQUID-2024:1 Denial of Service in HTTP Chunked DecodingEPSS 65.3%CVE-2025-62168CRITICALSquid vulnerable to information disclosure via authentication credential leakage in error handlingEPSS 62.9%CVE-2024-23638MEDIUMSQUID-2023:11 Denial of Service in Cache ManagerEPSS 60.1%CVE-2023-50269HIGHSQUID-2023:10 Denial of Service in HTTP Request parsingEPSS 57.6%CVE-2024-45802HIGHSquid Denial of ServiceEPSS 47.9%CVE-2025-54574CRITICALSquid's URN Handling can lead to Buffer OverflowEPSS 22.9%CVE-2023-49286HIGHDenial of Service in Helper Process managementEPSS 10.4%CVE-2026-33526CRITICALSquid vulnerable to Denial of Service in ICP Request handlingEPSS 8.9%CVE-2026-32748HIGHSquid has Denial of Service in ICP Response handlingEPSS 8.9%CVE-2024-37894MEDIUMSquid vulnerable to heap corruption in ESI assignEPSS 6.3%CVE-2023-46728HIGHSQUID-2021:8 Denial of Service in Gopher gatewayEPSS 6.0%CVE-2023-49288HIGHDenial of Service in HTTP Collapsed Forwarding in SquidEPSS 4.8%CVE-2023-46724HIGHSQUID-2023:4 Denial of Service in SSL Certificate validationEPSS 4.0%CVE-2026-47729MEDIUMSquid: Memory disclosure in FTP gatewayEPSS 1.5%CVE-2026-50012MEDIUMSquid: Memory corruption in cache_digest reply handlingEPSS 1.4%CVE-2026-33515MEDIUMSquid has issues in ICP message handlingEPSS 1.0%