v
varnish-software
Security Risk Profile
48
/100
mediumSecurity Risk Score
Comprehensive risk assessment based on 13 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from August 1, 2017 to present
13
Total CVEs
10
Critical+High
0
Exploited
6
Unpatched
Threat Assessment
Avg CVSS
7.5
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
6
Critical/High
Risk Level
48/100
medium
Severity Distribution
Critical
2High
8Medium
3Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
4Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
1
2
Input Validation
1
3
Integer Overflow
1
Most Affected Products
1. Varnish-software Varnish Enterprise77
2. Varnish-software Varnish Cache Plus55
3. Varnish-software Varnish Cache27
4. Varnish Cache Project Varnish Cache17
5. Debian Debian Linux9
Recent Vulnerabilities
See more →CVE-2026-40395
CVSS 7.5high
Apr 12, 2026🔧 No Patch
CVE-2026-40394
CVSS 7.5high
Apr 12, 2026🔧 No Patch
CVE-2026-34475
CVSS 9.8EPSS 0%critical
Mar 27, 2026🔧 No Patch
CVE-2025-30346
CVSS 5.4EPSS 0%medium
Mar 21, 2025🔧 No Patch
CVE-2025-30347
CVSS 7.5EPSS 0%high
Mar 21, 2025🔧 No Patch
CVE-2023-41104
CVSS 6.5EPSS 0%medium
Aug 23, 2023
CVE-2022-45060
CVSS 7.5high
Nov 9, 2022
CVE-2022-23959
CVSS 9.1critical
Jan 26, 2022
CVE-2021-36740
CVSS 6.5medium
Jul 13, 2021
CVE-2019-20637
CVSS 7.5high
Apr 8, 2020🔧 No Patch
Monitor varnish-software in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.