Description
Squid before 4.9, when certain web browsers are used, mishandles HTML in the host (aka hostname) parameter to cachemgr.cgi.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2278-1 | squid3 security update |
Debian DSA |
DSA-4732-1 | squid security update |
EUVD |
EUVD-2019-8556 | Squid before 4.9, when certain web browsers are used, mishandles HTML in the host (aka hostname) parameter to cachemgr.cgi. |
Ubuntu USN |
USN-4356-1 | Squid vulnerabilities |
References
History
Wed, 05 Nov 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 05 Nov 2025 03:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Wed, 05 Nov 2025 01:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-11-05T17:04:14.102Z
Reserved: 2019-11-11T00:00:00.000Z
Link: CVE-2019-18860
No data.
Status : Modified
Published: 2020-03-20T21:15:16.547
Modified: 2025-11-05T17:15:33.743
Link: CVE-2019-18860
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
EUVD
Ubuntu USN