CVE-2026-33526
- EPSS 1.34%
- Veröffentlicht 26.03.2026 00:16:12
- Zuletzt bearbeitet 31.03.2026 01:18:03
Squid is a caching proxy for the Web. Prior to version 7.5, due to heap Use-After-Free, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service a...
CVE-2026-33515
- EPSS 0.14%
- Veröffentlicht 26.03.2026 00:13:51
- Zuletzt bearbeitet 31.03.2026 01:22:04
Squid is a caching proxy for the Web. Prior to version 7.5, due to improper input validation, Squid is vulnerable to out of bounds read when handling ICP traffic. This problem allows a remote attacker to receive small amounts of memory potentially co...
CVE-2026-32748
- EPSS 0.24%
- Veröffentlicht 26.03.2026 00:11:01
- Zuletzt bearbeitet 26.03.2026 20:43:15
Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote a...
CVE-2025-62168
- EPSS 16.39%
- Veröffentlicht 17.10.2025 16:21:30
- Zuletzt bearbeitet 05.11.2025 17:15:45
Squid is a caching proxy for the Web. In Squid versions prior to 7.2, a failure to redact HTTP authentication credentials in error handling allows information disclosure. The vulnerability allows a script to bypass browser security protections and le...
- EPSS 0.18%
- Veröffentlicht 26.09.2025 16:15:48
- Zuletzt bearbeitet 07.10.2025 18:50:14
Squid through 7.1 mishandles ASN.1 encoding of long SNMP OIDs. This occurs in asn_build_objid in lib/snmplib/asn1.c.
CVE-2025-54574
- EPSS 4.99%
- Veröffentlicht 01.08.2025 18:02:19
- Zuletzt bearbeitet 05.11.2025 17:15:43
Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To wo...
CVE-2024-45802
- EPSS 0.92%
- Veröffentlicht 28.10.2024 15:15:04
- Zuletzt bearbeitet 03.11.2025 21:16:21
Squid is an open source caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to Input Validation, Premature Release of Resource During Expected Lifetime, and Missing Release of Resource after Effective Lifetime bugs, Squid is vulnerab...
CVE-2024-37894
- EPSS 1.3%
- Veröffentlicht 25.06.2024 20:15:11
- Zuletzt bearbeitet 03.11.2025 21:16:14
Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.
CVE-2024-25111
- EPSS 3.05%
- Veröffentlicht 06.03.2024 19:15:07
- Zuletzt bearbeitet 03.11.2025 21:16:07
Squid is a web proxy cache. Starting in version 3.5.27 and prior to version 6.8, Squid may be vulnerable to a Denial of Service attack against HTTP Chunked decoder due to an uncontrolled recursion bug. This problem allows a remote attacker to cause D...
CVE-2024-25617
- EPSS 1.3%
- Veröffentlicht 14.02.2024 21:15:08
- Zuletzt bearbeitet 25.06.2025 20:51:35
Squid is an open source caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a Collapse of Data into Unsafe Value bug ,Squid may be vulnerable to a Denial of Service attack against HTTP header parsing. This problem allows a remote ...