Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
Vulnerabilities
search
All ecosystems
599122
AlmaLinux
4564
Alpaquita
8612
Alpine
4021
Android
3260
BellSoft Hardened Containers
397
Bitnami
6758
Chainguard
5324
CleanStart
428
CRAN
14
crates.io
2155
Debian
53560
Echo
3066
GHC
3
GIT
79668
GitHub Actions
47
Go
6310
Hackage
29
Hex
54
Julia
349
Linux
15364
Mageia
5849
Maven
6248
MinimOS
18384
npm
216534
NuGet
1619
opam
11
openEuler
6219
openSUSE
12278
OSS-Fuzz
3808
Packagist
5916
Pub
11
PyPI
18327
Red Hat
18972
Rocky Linux
2824
Root
11135
RubyGems
1905
SUSE
20003
SwiftURL
48
Ubuntu
51674
VSCode
18
Wolfi
3356
ID
Packages
Summary
Published
arrow_upward
Attributes
BIT-gitlab-2026-2370
Bitnami/gitlab
Improper Handling of Parameters in GitLab
16 hours ago
Fix available
Severity - 8.8 (High)
BIT-mastodon-2026-33869
Bitnami/mastodon
Mastodon has a denial of service for quote authorization
16 hours ago
Fix available
Severity - 4.8 (Medium)
BIT-mastodon-2026-33868
Bitnami/mastodon
Mastodon has a GET-Based Open Redirect via '/web/%2F<domain>'
16 hours ago
Fix available
Severity - 6.1 (Medium)
BIT-prestashop-2026-33674
Bitnami/prestashop
PrestaShop: Improper Use of Validation Framework
yesterday
Fix available
Severity - 2.0 (Low)
BIT-prestashop-2026-33673
Bitnami/prestashop
PrestaShop has multiple stored XSS vulnerabilities via unprotected Template variables
yesterday
Fix available
Severity - 7.6 (High)
BIT-nats-2026-33249
Bitnami/nats
NATS: Message tracing can be redirected to arbitrary subject
yesterday
Fix available
Severity - 4.3 (Medium)
BIT-nats-2026-33248
Bitnami/nats
NATS has mTLS verify_and_map authentication bypass via incorrect Subject DN matching
4 days ago
Fix available
Severity - 4.2 (Medium)
BIT-nats-2026-33247
Bitnami/nats
NATS credentials are exposed in monitoring port via command-line argv
4 days ago
Fix available
Severity - 5.3 (Medium)
BIT-nats-2026-33246
Bitnami/nats
NATS: Leafnode connections allow spoofing of Nats-Request-Info identity headers
4 days ago
Fix available
Severity - 5.4 (Medium)
BIT-nats-2026-33223
Bitnami/nats
NATS Server: Incomplete Stripping of Nats-Request-Info Header Allows Identity Spoofing
4 days ago
Fix available
Severity - 5.4 (Medium)
BIT-nats-2026-33222
Bitnami/nats
NATS JetStream has an authorization bypass through its Management API
4 days ago
Fix available
Severity - 4.9 (Medium)
BIT-nats-2026-33219
Bitnami/nats
NATS is vulnerable to pre-auth DoS through WebSockets client service
4 days ago
Fix available
Severity - 5.3 (Medium)
BIT-nats-2026-33218
Bitnami/nats
NATS has pre-auth server panic via leafnode handling
4 days ago
Fix available
Severity - 7.5 (High)
BIT-nats-2026-33217
Bitnami/nats
NATS allows MQTT clients to bypass ACL checks
4 days ago
Fix available
Severity - 6.5 (Medium)
BIT-nats-2026-33216
Bitnami/nats
NATS has MQTT plaintext password disclosure
4 days ago
Fix available
Severity - 7.5 (High)
BIT-nats-2026-29785
Bitnami/nats
NATS Server panic via malicious compression on leafnode port
4 days ago
Fix available
Severity - 7.5 (High)
Load more...
Bitnami - OSV