Known Vulnerabilities for products from Squid-cache

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Squid-cache".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2026-33526 json Squid is a caching proxy for the Web. Prior to version 7.5, due to heap Use-After-Free, Squid is vulnerable to Denial of Serv... Not Provided 2026-03-26 2026-03-31
CVE-2026-33515 json Squid is a caching proxy for the Web. Prior to version 7.5, due to improper input validation, Squid is vulnerable to out of b... Not Provided 2026-03-26 2026-03-31
CVE-2024-23638 json 6.5 - MEDIUM 2024-01-24 2024-01-30
CVE-2023-46848 json Squid is vulnerable to Denial of Service, where a remote attacker can perform DoS by sending ftp:// URLs in HTTP Request mes... 7.5 - HIGH 2023-11-03 2023-11-13
CVE-2023-46847 json Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB... 7.5 - HIGH 2023-11-03 2023-11-30
CVE-2023-46846 json SQUID is vulnerable to HTTP request smuggling, caused by chunked decoder lenience, allows a remote attacker to perform Reques... 5.3 - MEDIUM 2023-11-03 2023-11-30
CVE-2023-46728 json Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a NULL pointer dereference bug Squid is vu... 7.5 - HIGH 2023-11-06 2023-11-14
CVE-2023-46724 json Squid is a caching proxy for the Web. Due to an Improper Validation of Specified Index bug, Squid versions 3.3.0.1 through 5... 7.5 - HIGH 2023-11-01 2023-11-09
CVE-2023-5824 json Squid is vulnerable to Denial of Service attack against HTTP and HTTPS clients due to an Improper Handling of Structural Elem... 7.5 - HIGH 2023-11-03 2024-01-25
CVE-2022-41318 json A buffer over-read was discovered in libntlmauth in Squid 2.5 through 5.6. Due to incorrect integer-overflow protection, the ... 8.6 - HIGH 2022-12-25 2023-08-08
CVE-2022-41317 json An issue was discovered in Squid 4.9 through 4.17 and 5.0.6 through 5.6. Due to inconsistent handling of internal URIs, there... 6.5 - MEDIUM 2022-12-25 2023-08-08
CVE-2021-46784 json In Squid 3.x through 3.5.28, 4.x through 4.17, and 5.x before 5.6, due to improper buffer management, a Denial of Service can... 6.5 - MEDIUM 2022-07-17 2023-10-22
CVE-2021-41611 json An issue was discovered in Squid 5.0.6 through 5.1.x before 5.2. When validating an origin server or peer certificate, Squid ... 7.5 - HIGH 2021-10-18 2023-11-07
CVE-2021-33620 json Squid before 4.15 and 5.x before 5.0.6 allows remote servers to cause a denial of service (affecting availability to all clie... 6.5 - MEDIUM 2021-05-28 2023-11-07
CVE-2021-31808 json An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to an input-validation bug, it is vulnerable to a Deni... 6.5 - MEDIUM 2021-05-27 2023-11-07
CVE-2021-31807 json An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. An integer overflow problem allows a remote server to achi... 6.5 - MEDIUM 2021-06-08 2023-11-07
CVE-2021-31806 json An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a memory-management bug, it is vulnerable to a Deni... 6.5 - MEDIUM 2021-05-27 2023-11-07
CVE-2021-28662 json An issue was discovered in Squid 4.x before 4.15 and 5.x before 5.0.6. If a remote server sends a certain response header ove... 6.5 - MEDIUM 2021-05-27 2023-11-07
CVE-2021-28652 json An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to incorrect parser validation, it allows a Denial of ... 4.9 - MEDIUM 2021-05-27 2023-11-07
CVE-2021-28651 json An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a buffer-management bug, it allows a denial of serv... 7.5 - HIGH 2021-05-27 2023-11-07

Known software with vulnerabilities from Squid-cache

Type Vendor Product Version
ApplicationSquid-cacheSquid2.0