varnish-software
Security Risk Profile
48
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 13 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from August 1, 2017 to present
13
Total CVEs
10
Critical+High
0
Exploited
6
Unpatched
Threat Assessment
Avg CVSS
7.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
6
Critical/High
Risk Level
48/100
medium
Severity Distribution
Critical
2High
8Medium
3Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
4Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
1
2
Input Validation
1
3
Integer Overflow
1
Most Affected Products
1. Varnish-software Varnish Enterprise77
2. Varnish-software Varnish Cache Plus55
3. Varnish-software Varnish Cache27
4. Varnish Cache Project Varnish Cache17
5. Debian Debian Linux9
Recent Vulnerabilities
See more →CVE-2026-40395
CVSS 7.5high
4/12/2026🔧 No Patch
CVE-2026-40394
CVSS 7.5high
4/12/2026🔧 No Patch
CVE-2026-34475
CVSS 9.8EPSS 0%critical
3/27/2026🔧 No Patch
CVE-2025-30346
CVSS 5.4EPSS 0%medium
3/21/2025🔧 No Patch
CVE-2025-30347
CVSS 7.5EPSS 0%high
3/21/2025🔧 No Patch
CVE-2023-41104
CVSS 6.5EPSS 0%medium
8/23/2023
CVE-2022-45060
CVSS 7.5high
11/9/2022
CVE-2022-23959
CVSS 9.1critical
1/26/2022
CVE-2021-36740
CVSS 6.5medium
7/13/2021
CVE-2019-20637
CVSS 7.5high
4/8/2020🔧 No Patch
Monitor varnish-software in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.