Loading
Generated remediation guidance and an executive summary. No account required.
Varnish Cache before 8.0.1 and Varnish Enterprise before 6.0.16r12, in certain unchecked req.url scenarios, mishandle URLs with a path of / for HTTP/1.1, potentially leading to cache poisoning or authentication bypass.
Use CWE-180, Varnish-Software vendor hub and Varnish Enterprise product page to widen CVE-2026-34475 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-41104, CVE-2025-30346 and CVE-2026-40395 for nearby disclosures in the same product family.