Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
BIT-hubble-relay-2026-26963
  • Bitnami/hubble-relay
Cilium may not enforce host firewall policies when Native Routing, WireGuard and Node Encryption are enabled 15 hours ago
  • Fix available
  • Severity - 5.4 (Medium)
BIT-ghost-2026-26980
  • Bitnami/ghost
Ghost has a SQL Injection in its Content API 15 hours ago
  • Fix available
  • Severity - 7.5 (High)
BIT-cilium-operator-2026-26963
  • Bitnami/cilium-operator
Cilium may not enforce host firewall policies when Native Routing, WireGuard and Node Encryption are enabled 15 hours ago
  • Fix available
  • Severity - 5.4 (Medium)
BIT-cilium-2026-26963
  • Bitnami/cilium
Cilium may not enforce host firewall policies when Native Routing, WireGuard and Node Encryption are enabled 15 hours ago
  • Fix available
  • Severity - 5.4 (Medium)
BIT-cosign-2026-24122
  • Bitnami/cosign
Cosign Certificate Chain Expiry Validation Issue Allows Issuing Certificate Expiry to Be Overlooked 15 hours ago
  • Fix available
  • Severity - 3.7 (Low)
BIT-tomcat-2026-24734
  • Bitnami/tomcat
Apache Tomcat Native, Apache Tomcat: OCSP revocation bypass yesterday
  • Fix available
BIT-tomcat-2026-24733
  • Bitnami/tomcat
Apache Tomcat: Security constraint bypass with HTTP/0.9 yesterday
  • Fix available
BIT-tomcat-2025-66614
  • Bitnami/tomcat
Apache Tomcat: Client certificate verification bypass due to virtual host mapping yesterday
  • Fix available
BIT-nifi-2026-25903
  • Bitnami/nifi
Apache NiFi: Missing Authorization of Restricted Permissions for Component Updates yesterday
  • Fix available
  • Severity - 8.7 (High)
BIT-jenkins-2026-27100
  • Bitnami/jenkins
See record for full details yesterday
  • Fix available
  • Severity - 4.3 (Medium)
BIT-milvus-2025-64513
  • Bitnami/milvus
Milvus Proxy has Critical Authentication Bypass Vulnerability yesterday
  • Fix available
  • Severity - 9.3 (Critical)
BIT-jenkins-2026-27099
  • Bitnami/jenkins
See record for full details yesterday
  • Fix available
  • Severity - 8.0 (High)
BIT-grafana-2026-21722
  • Bitnami/grafana
Public Dashboards time range restriction on annotations can be bypassed yesterday
  • Fix available
  • Severity - 5.3 (Medium)
BIT-grafana-2026-21721
  • Bitnami/grafana
Dashboard Permissions Scope Bypass Enables Cross‑Dashboard Privilege Escalation yesterday
  • Fix available
  • Severity - 8.1 (High)
BIT-grafana-2025-41117
  • Bitnami/grafana
XSS in Grafana Explore stack trace yesterday
  • Fix available
  • Severity - 6.8 (Medium)
BIT-milvus-2026-26190
  • Bitnami/milvus
Milvus Allows Unauthenticated Access to Restful API on Metrics Port (9091) Leads to Critical System Compromise 2 days ago
  • Fix available
  • Severity - 9.8 (Critical)