Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
BIT-zookeeper-2026-84501
  • Bitnami/zookeeper
Apache ZooKeeper: Operational log forgery via newline injection in EnsembleAuthenticationProvider yesterday
  • Fix available
  • Severity - 5.3 (Medium)
BIT-zookeeper-2026-84439
  • Bitnami/zookeeper
Apache ZooKeeper: Audit log injection via unsanitized output from multiple sources yesterday
  • Fix available
  • Severity - 5.3 (Medium)
BIT-zookeeper-2026-79993
  • Bitnami/zookeeper
Apache ZooKeeper: Missing ACL check on deleteContainer opcode allows unauthorized deletion of any empty persistent/container znode yesterday
  • Fix available
  • Severity - 7.5 (High)
BIT-zookeeper-2026-59969
  • Bitnami/zookeeper
Apache ZooKeeper: Improper validation of certificate with host mismatch in FIPS mode yesterday
  • Fix available
  • Severity - 7.5 (High)
BIT-zookeeper-2026-59739
  • Bitnami/zookeeper
Apache ZooKeeper: Information disclosure via SetWatches reconnect replay yesterday
  • Fix available
  • Severity - 7.5 (High)
BIT-rclone-2026-88046
  • Bitnami/rclone
rclone: source object names can escape the configured root on upload yesterday
  • Fix available
  • Severity - 5.3 (Medium)
BIT-rclone-2026-88045
  • Bitnami/rclone
rclone: S3 multipart declared-length memory exhaustion yesterday
  • Fix available
  • Severity - 7.5 (High)
BIT-rclone-2026-88044
  • Bitnami/rclone
rclone: RC per-server auth-proxy bypass yesterday
  • Fix available
  • Severity - 9.1 (Critical)
BIT-rclone-2026-88015
  • Bitnami/rclone
rclone local: crafted Range request against a translated symlink panics (DoS) yesterday
  • Fix available
  • Severity - 5.3 (Medium)
BIT-rclone-2026-88014
  • Bitnami/rclone
rclone archive/zip: Zip Slip via unsanitized zip entry names lets a malicious archive escape its own namespace yesterday
  • Fix available
  • Severity - 6.3 (Medium)
BIT-rclone-2026-88013
  • Bitnami/rclone
rclone: http backend forwards custom/auth headers to a different host on redirect yesterday
  • Fix available
  • Severity - 3.7 (Low)
BIT-dotnet-sdk-2025-36854
  • Bitnami/dotnet-sdk
EOL ASP.NET 6.0 Remote Code Execution Vulnerability 2 days ago
  • Fix available
  • Severity - 8.1 (High)
BIT-dotnet-2025-36854
  • Bitnami/dotnet
EOL ASP.NET 6.0 Remote Code Execution Vulnerability 2 days ago
  • Fix available
  • Severity - 8.1 (High)
BIT-kyverno-2025-15613
  • Bitnami/kyverno
Kyverno before v1.13.4 SSRF via Service Call 2 days ago
  • Fix available
  • Severity - 6.9 (Medium)
BIT-dotnet-sdk-2025-7326
  • Bitnami/dotnet-sdk
EOL ASP.NET Core Elevation of Privilege Vulnerability 2 days ago
  • Fix available
  • Severity - 7.0 (High)
BIT-dotnet-2025-7326
  • Bitnami/dotnet
EOL ASP.NET Core Elevation of Privilege Vulnerability 2 days ago
  • Fix available
  • Severity - 7.0 (High)