Search CVE reports


Toggle filters

1 – 10 of 118 results


CVE-2026-62846

Medium priority
Needs evaluation

[SQUID-2026:9]

2 affected packages

squid, squid3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squid Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
squid3 Not in release Not in release Not in release — Needs evaluation
Show less packages

CVE-2026-61642

Medium priority
Needs evaluation

Request Smuggling in HTTP Transfer-Encoding

2 affected packages

squid, squid3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squid Needs evaluation Needs evaluation Needs evaluation Needs evaluation —
squid3 Not in release Not in release Not in release — Needs evaluation
Show less packages

CVE-2026-50012

Medium priority

Some fixes available 4 of 7

Squid is a caching proxy for the Web. Prior to 7.6, due to an improper input validation bug in cache digest reply handling (peerDigestSwapInMask in src/peer_digest.cc), Squid is vulnerable to a heap-based buffer overflow: a cache...

2 affected packages

squid, squid3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squid Fixed Fixed Fixed Needs evaluation —
squid3 Not in release Not in release Not in release — Needs evaluation
Show less packages

CVE-2026-47729

Medium priority

Some fixes available 4 of 7

Squid is a caching proxy for the Web. Prior to 7.6, due to an improper validation of syntactic correctness of input in the FTP gateway (src/clients/FtpGateway.cc), Squid is vulnerable to an out-of-bounds read: when a listing entry...

2 affected packages

squid, squid3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squid Fixed Fixed Fixed Needs evaluation —
squid3 Not in release Not in release Not in release — Needs evaluation
Show less packages

CVE-2026-33526

Medium priority

Some fixes available 3 of 6

Squid is a caching proxy for the Web. Prior to version 7.5, due to heap Use-After-Free, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable...

2 affected packages

squid, squid3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squid Not affected Fixed Fixed Needs evaluation —
squid3 Not in release Not in release Not in release — Needs evaluation
Show less packages

CVE-2026-33515

Medium priority

Some fixes available 3 of 6

Squid is a caching proxy for the Web. Prior to version 7.5, due to improper input validation, Squid is vulnerable to out of bounds read when handling ICP traffic. This problem allows a remote attacker to receive small amounts of...

2 affected packages

squid, squid3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squid Not affected Fixed Fixed Needs evaluation —
squid3 Not in release Not in release Not in release — Needs evaluation
Show less packages

CVE-2026-32748

Medium priority

Some fixes available 3 of 6

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This...

2 affected packages

squid, squid3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squid Not affected Fixed Fixed Needs evaluation —
squid3 Not in release Not in release Not in release — Needs evaluation
Show less packages

CVE-2025-62168

Medium priority
Fixed

Squid is a caching proxy for the Web. In Squid versions prior to 7.2, a failure to redact HTTP authentication credentials in error handling allows information disclosure. The vulnerability allows a script to bypass...

2 affected packages

squid, squid3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squid — Fixed Fixed Fixed —
squid3 — Not in release Not in release — Fixed
Show less packages

CVE-2025-59362

Medium priority
Fixed

Squid through 7.1 mishandles ASN.1 encoding of long SNMP OIDs. This occurs in asn_build_objid in lib/snmplib/asn1.c.

2 affected packages

squid, squid3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squid — Fixed Fixed Fixed —
squid3 — Not in release Not in release — Fixed
Show less packages

CVE-2025-54574

Medium priority

Some fixes available 2 of 4

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed...

2 affected packages

squid, squid3

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
squid Not affected Not affected Fixed Fixed —
squid3 Not in release Not in release Not in release — Needs evaluation
Show less packages