These are all security issues fixed in the libvarnishapi2-6.6.1-1.2 package on the GA media of openSUSE Tumbleweed.
{ "binaries": [ { "libvarnishapi2": "6.6.1-1.2", "varnish-devel": "6.6.1-1.2", "varnish": "6.6.1-1.2" } ] }