Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31248
HistoryJul 19, 2021 - 12:55 a.m.

Authorization Bypass

2021-07-1900:55:44
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
16
varnish
authorization bypass
request smuggling
content-length header

EPSS

0.007

Percentile

79.9%

varnish is vulnerable to authorization bypass. The application allows request smuggling and VCL authorization bypass via a large Content-Length header for a POST request.