Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
BIT-aspnet-core-2026-69304
  • Bitnami/aspnet-core
ASP.NET Core Denial of Service Vulnerability 4 hours ago
  • Fix available
  • Severity - 5.9 (Medium)
BIT-parse-2026-100632
  • Bitnami/parse
Parse Server 9.0.0 before 9.10.1 Protected Fields Disclosure via LiveQuery 6 hours ago
  • Fix available
  • Severity - 7.1 (High)
BIT-parse-2026-100631
  • Bitnami/parse
Parse Server 9.0.0 Unauthenticated Installation Deletion via Operator Injection 6 hours ago
  • Fix available
  • Severity - 8.7 (High)
BIT-tomcat-2026-87022
  • Bitnami/tomcat
Apache Tomcat: WebSocket message smuggling with per-message-deflate 7 hours ago
  • Fix available
  • Severity - 7.5 (High)
BIT-tomcat-2026-86350
  • Bitnami/tomcat
Apache Tomcat: Regression in fix for CVE-2026-41293 can trigger request header mix-up 7 hours ago
  • Fix available
  • Severity - 9.1 (Critical)
BIT-tomcat-2026-86248
  • Bitnami/tomcat
Apache Tomcat: Fix for CVE-2026-34500 was incomplete. OCSP checks sometimes soft-fail with FFM even when soft-fail is disabled 7 hours ago
  • Fix available
  • Severity - 9.8 (Critical)
BIT-tomcat-2026-79677
  • Bitnami/tomcat
Apache Tomcat: WebSocket DoS due to lost asynchronous write timeout 7 hours ago
  • Fix available
  • Severity - 7.5 (High)
BIT-tomcat-2026-78437
  • Bitnami/tomcat
Apache Tomcat: HTTP/2 DoS via malformed request 7 hours ago
  • Fix available
  • Severity - 7.3 (High)
BIT-tomcat-2026-78383
  • Bitnami/tomcat
Apache Tomcat: AJP DoS via missing request body 7 hours ago
  • Fix available
  • Severity - 7.5 (High)
BIT-tomcat-2026-77791
  • Bitnami/tomcat
Apache Tomcat: DoS via busy wait during WebSocket close 7 hours ago
  • Fix available
  • Severity - 7.5 (High)
BIT-tomcat-2026-77762
  • Bitnami/tomcat
Apache Tomcat: Stale HPACK emitter injects trailers into recycled pooled Request 7 hours ago
  • Fix available
  • Severity - 8.1 (High)
BIT-tomcat-2026-77756
  • Bitnami/tomcat
Apache Tomcat: Transfer-Encoding honored for HTTP/1.0 requests 7 hours ago
  • Fix available
  • Severity - 3.7 (Low)
BIT-tomcat-2026-76183
  • Bitnami/tomcat
Apache Tomcat: Bypass of security constraints for WebSocket endpoints 7 hours ago
  • Fix available
  • Severity - 9.8 (Critical)
BIT-tomcat-2026-75973
  • Bitnami/tomcat
Apache Tomcat: Cross-context authentication mix-up with Jakarta Authentication configured 7 hours ago
  • Fix available
  • Severity - 7.3 (High)
BIT-tomcat-2026-73581
  • Bitnami/tomcat
Apache Tomcat: OpenSSL and OpenSSL-FFM TLS implementations ignore CRLs when certificate uses a keystore 7 hours ago
  • Fix available
  • Severity - 6.5 (Medium)
BIT-php-min-2026-93682
  • Bitnami/php-min
Out-of-bounds read in the HTTP stream wrapper when following a redirect with an empty Location header 7 hours ago
  • Fix available
  • Severity - 5.8 (Medium)