Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
BIT-ghost-2026-29053
  • Bitnami/ghost
Ghost Vulnerable to Remote Code Execution via Malicious Themes 6 hours ago
  • Fix available
  • Severity - 7.6 (High)
BIT-moodle-2025-67847
  • Bitnami/moodle
Moodle: moodle: remote code execution via insufficient restore input validation yesterday
  • Fix available
  • Severity - 8.8 (High)
BIT-python-2026-2297
  • Bitnami/python
SourcelessFileLoader does not use io.open_code() yesterday
  • Fix available
  • Severity - 5.7 (Medium)
BIT-python-min-2026-2297
  • Bitnami/python-min
SourcelessFileLoader does not use io.open_code() yesterday
  • Fix available
  • Severity - 5.7 (Medium)
BIT-moodle-2021-47857
  • Bitnami/moodle
Moodle 3.10.3 - 'label' Persistent Cross Site Scripting yesterday
  • No fix available
  • Severity - 5.1 (Medium)
BIT-libpython-2026-2297
  • Bitnami/libpython
SourcelessFileLoader does not use io.open_code() yesterday
  • Fix available
  • Severity - 5.7 (Medium)
BIT-django-2026-25674
  • Bitnami/django
Potential incorrect permissions on newly created file system objects yesterday
  • Fix available
  • Severity - 3.7 (Low)
BIT-django-2026-25673
  • Bitnami/django
Potential denial-of-service vulnerability in URLField via Unicode normalization on Windows yesterday
  • Fix available
  • Severity - 7.5 (High)
BIT-activemq-2025-66168
  • Bitnami/activemq
Apache ActiveMQ, Apache ActiveMQ All Module, Apache ActiveMQ MQTT Module: MQTT control packet remaining length field is not properly validated yesterday
  • Fix available
  • Severity - 8.8 (High)
BIT-discourse-2026-28227
  • Bitnami/discourse
Discourse Vulnerable to Unauthorized Topic Creation in Staff-Only Categories via Topic Timer publish_to_category 4 days ago
  • Fix available
  • Severity - 1.2 (Low)
BIT-discourse-2026-28219
  • Bitnami/discourse
Privilege Escalation via Mass Assignment Allows Regular Users to Set Topics as Global Banners 4 days ago
  • Fix available
  • Severity - 1.3 (Low)
BIT-discourse-2026-28218
  • Bitnami/discourse
Discourse's Fail-Open Access Control in Data Explorer Plugin Allows Unauthorized SQL Query Execution 4 days ago
  • Fix available
  • Severity - 5.3 (Medium)
BIT-discourse-2026-27162
  • Bitnami/discourse
DIscourse doesn't prevent whispers to leak in excerpts 4 days ago
  • Fix available
  • Severity - 4.9 (Medium)
BIT-discourse-2026-27154
  • Bitnami/discourse
Discourse has XSS when editing a malicious post 4 days ago
  • Fix available
  • Severity - 1.3 (Low)
BIT-discourse-2026-27153
  • Bitnami/discourse
Discourse doesn't prevent moderators from exporting user Chat DMs 4 days ago
  • Fix available
  • Severity - 1.3 (Low)
BIT-discourse-2026-27152
  • Bitnami/discourse
DIscourse has DM communication-preference bypass when adding members 4 days ago
  • Fix available
  • Severity - 1.3 (Low)