CVE-2025-30346
MEDIUMDescription
Varnish Cache before 7.6.2 and Varnish Enterprise before 6.0.13r10 allow client-side desync via HTTP/1 requests.
Is your site exposed to CVE-2025-30346?
Run a free security scan — no signup, results in seconds.
CVSS v3.1 Score
Weakness Type (CWE)
Affected Products
| Vendor | Product |
|---|---|
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish-software | varnish_enterprise |
| varnish_cache_project | varnish_cache |
References
Advisories & Patches
Other References
Frequently Asked Questions
What is CVE-2025-30346? +
How severe is CVE-2025-30346? +
What products are affected by CVE-2025-30346? +
How do I check if I'm vulnerable to CVE-2025-30346? +
Related Vulnerabilities
Netty is an asynchronous, event-driven network application framework. Prior to versions 4.1.136.Final and 4.2.16.Final, Netty's HTTP/2-to-HTTP/1.x translation layer (`Http2StreamFrameToHttpObjectCodec` and …
Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in elixir-mint Mint allows attacker-controlled HTTP/1 servers to desynchronise response framing …
Member Login Script 3.3 contains a client-side desynchronization vulnerability that allows attackers to manipulate HTTP request handling by exploiting Content-Length …
Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') vulnerability in Quest Coexistence Manager for Notes (Free/Busy Connector modules) allows HTTP …
An HTTP Request Smuggling [CWE-444] vulnerability in the Authentication portal of WatchGuard Fireware OS allows a remote attacker to evade …
A HTTP request smuggling and desynchronization vulnerability affects Kong Gateway Enterprise 3.4, 3.10, 3.11, 3.12, 3.13, and 3.14 series. The …