An issue was discovered in Squid 4.9 through 4.17 and 5.0.6 through 5.6. Due to inconsistent handling of internal URIs, there can be Exposure of Sensitive Information about clients using the proxy via an HTTPS request to an internal cache manager URL. This is fixed in 5.7.
We have discovered 9,490 live websites that are affected by CVE-2022-41317.
Product | ![]() |
Category | Cache Tools |
Vulnerable Domains | 9,490 live websites (93.56% of squid install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 53 versions ( 77.94% of all versions) |
![]() | 874 websites |
![]() | 4,323 websites |
![]() | 1,027 websites |
![]() | 569 websites |
![]() | 442 websites |
![]() | 312 websites |
![]() | 272 websites |
![]() | 260 websites |
![]() | 148 websites |
![]() | 145 websites |
.de | 2,733 websites |
.com | 2,516 websites |
.co.uk | 399 websites |
.org | 378 websites |
.net | 361 websites |
.fr | 269 websites |
.es | 216 websites |
.pl | 202 websites |
.at | 178 websites |
.jp | 178 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
****.*********.net | ![]() | *,*** | |
***.org | ![]() | *,*** | |
*********.net | ![]() | *,*** | |
*****.edu | ![]() | *,*** | |
*********.**.uk | ![]() | **,*** | |
*****.******.********.edu | ![]() | **,*** | |
****.*********.net | ![]() | **,*** | |
*******.**.jp | ![]() | **,*** | |
************.de | ![]() | **,*** | |
*******.*************.eu | ![]() | **,*** |