Known Vulnerabilities for products from Squid-cache

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Squid-cache".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-33526 Squid is a caching proxy for the Web. Prior to version 7.5, due to heap Use-After-Free, Squid is vulnerable to Denial of Serv... Not Provided 2026-03-26 2026-03-31
CVE-2026-33515 Squid is a caching proxy for the Web. Prior to version 7.5, due to improper input validation, Squid is vulnerable to out of b... Not Provided 2026-03-26 2026-03-31
CVE-2021-41611 An issue was discovered in Squid 5.0.6 through 5.1.x before 5.2. When validating an origin server or peer certificate, Squid ... 7.5 - HIGH 2021-10-18 2023-11-07
CVE-2021-33620 Squid before 4.15 and 5.x before 5.0.6 allows remote servers to cause a denial of service (affecting availability to all clie... 6.5 - MEDIUM 2021-05-28 2023-11-07
CVE-2021-31808 An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to an input-validation bug, it is vulnerable to a Deni... 6.5 - MEDIUM 2021-05-27 2023-11-07
CVE-2021-31807 An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. An integer overflow problem allows a remote server to achi... 6.5 - MEDIUM 2021-06-08 2023-11-07
CVE-2021-31806 An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a memory-management bug, it is vulnerable to a Deni... 6.5 - MEDIUM 2021-05-27 2023-11-07
CVE-2021-28662 An issue was discovered in Squid 4.x before 4.15 and 5.x before 5.0.6. If a remote server sends a certain response header ove... 6.5 - MEDIUM 2021-05-27 2023-11-07
CVE-2021-28652 An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to incorrect parser validation, it allows a Denial of ... 4.9 - MEDIUM 2021-05-27 2023-11-07
CVE-2021-28651 An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a buffer-management bug, it allows a denial of serv... 7.5 - HIGH 2021-05-27 2023-11-07
CVE-2021-28116 Squid through 4.14 and 5.x through 5.0.5, in some configurations, allows information disclosure because of an out-of-bounds r... 5.3 - MEDIUM 2021-03-09 2023-11-07
CVE-2020-25097 An issue was discovered in Squid through 4.13 and 5.x through 5.0.4. Due to improper input validation, it allows a trusted cl... 8.6 - HIGH 2021-03-19 2023-11-07
CVE-2020-24606 Squid before 4.13 and 5.x before 5.0.4 allows a trusted peer to perform Denial of Service by consuming all available CPU cycl... 7.5 - HIGH 2020-08-24 2023-11-07
CVE-2020-15811 An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Splitting a... 6.5 - MEDIUM 2020-09-02 2024-02-02
CVE-2020-15810 An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Smuggling a... 6.5 - MEDIUM 2020-09-02 2023-11-07
CVE-2020-15049 An issue was discovered in http/ContentLengthInterpreter.cc in Squid before 4.12 and 5.x before 5.0.3. A Request Smuggling an... 8.8 - HIGH 2020-06-30 2023-11-07
CVE-2020-14059 An issue was discovered in Squid 5.x before 5.0.3. Due to an Incorrect Synchronization, a Denial of Service can occur when pr... 6.5 - MEDIUM 2020-06-30 2021-03-30
CVE-2020-14058 An issue was discovered in Squid before 4.12 and 5.x before 5.0.3. Due to use of a potentially dangerous function, Squid and ... 7.5 - HIGH 2020-06-30 2023-11-07
CVE-2020-11945 An issue was discovered in Squid before 5.0.2. A remote attacker can replay a sniffed Digest Authentication nonce to gain acc... 9.8 - CRITICAL 2020-04-23 2023-11-07
CVE-2020-8517 An issue was discovered in Squid before 4.10. Due to incorrect input validation, the NTLM authentication credentials parser i... 7.5 - HIGH 2020-02-04 2021-07-21

Known software with vulnerabilities from Squid-cache

Type Vendor Product Version
ApplicationSquid-cacheSquid2.0