CVE-2022-41317

An issue was discovered in Squid 4.9 through 4.17 and 5.0.6 through 5.6. Due to inconsistent handling of internal URIs, there can be Exposure of Sensitive Information about clients using the proxy via an HTTPS request to an internal cache manager URL. This is fixed in 5.7.


We have discovered 9,490 live websites that are affected by CVE-2022-41317.

Test my site




Affected Software

Product  squid
Category Cache Tools
Vulnerable Domains9,490 live websites (93.56% of squid install base)
Vulnerable Versions
  • from 0 through 5.0.6
Vulnerable Versions Count53 versions ( 77.94% of all versions)



Details

  • Published - Dec 25, 2022
  • Updated - Aug 3, 2024

CVE-2022-41317 usage by Country

United States874 websites



Germany4,323 websites
Japan1,027 websites
GB569 websites
China442 websites
Poland312 websites
France272 websites
Spain260 websites
Czech Republic148 websites
Italy145 websites

CVE-2022-41317 usage by TLD

.de2,733 websites
.com2,516 websites
.co.uk399 websites
.org378 websites
.net361 websites
.fr269 websites
.es216 websites
.pl202 websites
.at178 websites
.jp178 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2022-41317

Top websites that are affected by CVE-2022-41317. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
****.*********.net GB*,***
***.org United States*,***
*********.net GB*,***
*****.edu United States*,***
*********.**.uk GB**,***
*****.******.********.edu United States**,***
****.*********.net GB**,***
*******.**.jp United States**,***
************.de Germany**,***
*******.*************.eu Spain**,***
See full domain list

FAQ

A total of 9,490 websites have been identified as vulnerable to CVE-2022-41317, discovered through global website indexing conducted by WebTechSurvey.
squid is susceptible to CVE-2022-41317 vulnerability.
squid versions before, and including, 5.0.6 are vulnerable to CVE-2022-41317.