CVE-2025-30346
MEDIUMDescription
Varnish Cache before 7.6.2 and Varnish Enterprise before 6.0.13r10 allow client-side desync via HTTP/1 requests.
Is your site exposed to CVE-2025-30346?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish_cache_project | varnish_cache |
References
Advisories & Patches
Other References
Frequently Asked Questions
What is CVE-2025-30346? +
How severe is CVE-2025-30346? +
What products are affected by CVE-2025-30346? +
How do I check if I'm vulnerable to CVE-2025-30346? +
Related Vulnerabilities
Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, ab attacker can force WebSocket upgrade …
Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in ithewei libhv allows HTTP Response Smuggling.This issue affects libhv: through …
Connection desynchronization between an HTTP proxy and the model backend. The fixes were rolled out for all proxies in front …
In Vinyl Cache before 9.0.1 and Varnish Cache before 9.0.3, a deficiency in HTTP/2 request parsing can be exploited to …
Inconsistent Interpretation of HTTP Requests vulnerability in mtrudel bandit allows HTTP request smuggling via duplicate Content-Length headers. 'Elixir.Bandit.Headers':get_content_length/1 in lib/bandit/headers.ex …
HTTP request desynchronization in Ping Identity PingAccess, all versions prior to 8.0.1 affected allows an attacker to send specially crafted …