Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
BIT-joomla-2026-23899
  • Bitnami/joomla
Joomla! Core - [20260306] - Improper access check in webservice endpoints 8 hours ago
  • Fix available
  • Severity - 8.6 (High)
BIT-joomla-2026-23898
  • Bitnami/joomla
Joomla! Core - [20260305] - Arbitrary file deletion in com_joomlaupdate 8 hours ago
  • Fix available
  • Severity - 8.6 (High)
BIT-joomla-2026-21632
  • Bitnami/joomla
Joomla! Core - [20260304] - XSS vectors in various article title outputs 8 hours ago
  • Fix available
  • Severity - 5.9 (Medium)
BIT-joomla-2026-21631
  • Bitnami/joomla
Joomla! Core - [20260303] - XSS vector in com_associations comparison view 8 hours ago
  • Fix available
  • Severity - 5.9 (Medium)
BIT-joomla-2026-21630
  • Bitnami/joomla
Joomla! Core - [20260302] - SQL injection in com_content articles webservice endpoint 8 hours ago
  • Fix available
  • Severity - 6.9 (Medium)
BIT-joomla-2026-21629
  • Bitnami/joomla
Joomla! Core - [20260301] - ACL hardening in com_ajax 8 hours ago
  • Fix available
  • Severity - 6.3 (Medium)
BIT-parse-2026-39381
  • Bitnami/parse
Parse Server's Endpoint `/sessions/me` bypasses `_Session` `protectedFields` yesterday
  • Fix available
  • Severity - 5.3 (Medium)
BIT-parse-2026-39321
  • Bitnami/parse
Parse Server has a login timing side-channel reveals user existence yesterday
  • Fix available
  • Severity - 6.3 (Medium)
BIT-cosign-2026-39395
  • Bitnami/cosign
Cosign's verify-blob-attestation reports false positive when payload parsing fails yesterday
  • Fix available
  • Severity - 4.3 (Medium)
BIT-activemq-2026-34197
  • Bitnami/activemq
Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ: Authenticated users could perform RCE via Jolokia MBeans yesterday
  • Fix available
  • Severity - 8.8 (High)
BIT-activemq-2026-33227
  • Bitnami/activemq
Apache ActiveMQ Client, Apache ActiveMQ Broker, Apache ActiveMQ All, Apache ActiveMQ Web, Apache ActiveMQ: Improper Limitation of a Pathname to a Restricted Classpath Directory yesterday
  • Fix available
  • Severity - 4.3 (Medium)
BIT-cassandra-2026-27315
  • Bitnami/cassandra
Apache Cassandra: cqlsh history sensitive information leak yesterday
  • Fix available
  • Severity - 5.5 (Medium)
BIT-parse-2026-35200
  • Bitnami/parse
Parse Server has a file upload Content-Type override via extension mismatch 2 days ago
  • Fix available
  • Severity - 2.1 (Low)
BIT-discourse-2026-34947
  • Bitnami/discourse
Discourse: Staged user custom fields are exposed on public invite pages 2 days ago
  • Fix available
  • Severity - 2.7 (Low)
BIT-discourse-2026-27481
  • Bitnami/discourse
Discourse: Hidden tag visibility bypass on tag routes 2 days ago
  • Fix available
  • Severity - 6.3 (Medium)
BIT-jupyterhub-2026-33709
  • Bitnami/jupyterhub
JupyterHub has an Open Redirect Vulnerability 2 days ago
  • Fix available
  • Severity - 5.1 (Medium)