Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
BIT-tomcat-2026-29146
  • Bitnami/tomcat
Apache Tomcat: EncryptInterceptor vulnerable to padding oracle attack by default 3 days ago
  • Fix available
  • Severity - 7.5 (High)
BIT-wiremock-2023-41329
  • Bitnami/wiremock
Domain restrictions bypass via DNS Rebinding in WireMock and WireMock Studio 3 days ago
  • Fix available
  • Severity - 6.6 (Medium)
BIT-wiremock-2023-41327
  • Bitnami/wiremock
Controlled SSRF through URL in the WireMock 3 days ago
  • Fix available
  • Severity - 5.4 (Medium)
BIT-nifi-2024-45477
  • Bitnami/nifi
Apache NiFi: Improper Neutralization of Input in Parameter Description 3 days ago
  • Fix available
  • Severity - 4.6 (Medium)
BIT-wiremock-2023-50069
  • Bitnami/wiremock
See record for full details 3 days ago
  • No fix available
  • Severity - 6.1 (Medium)
BIT-tomcat-2026-34500
  • Bitnami/tomcat
Apache Tomcat: OCSP checks sometimes soft-fail with FFM even when soft-fail is disabled 3 days ago
  • Fix available
  • Severity - 6.5 (Medium)
BIT-tomcat-2026-34487
  • Bitnami/tomcat
Apache Tomcat: Cloud membership for clustering component exposed the Kubernetes bearer token 3 days ago
  • Fix available
  • Severity - 7.5 (High)
BIT-tomcat-2026-34483
  • Bitnami/tomcat
Apache Tomcat: Incomplete escaping of JSON access logs 3 days ago
  • Fix available
  • Severity - 7.5 (High)
BIT-tomcat-2026-29145
  • Bitnami/tomcat
Apache Tomcat, Apache Tomcat Native: OCSP checks sometimes soft-fail even when soft-fail is disabled 3 days ago
  • Fix available
  • Severity - 9.1 (Critical)
BIT-tomcat-2026-25854
  • Bitnami/tomcat
Apache Tomcat: Occasionally open redirect 3 days ago
  • Fix available
  • Severity - 6.1 (Medium)
BIT-tomcat-2026-24880
  • Bitnami/tomcat
Apache Tomcat: Request smuggling via invalid chunk extension 3 days ago
  • Fix available
  • Severity - 7.5 (High)
BIT-mongodb-2026-4148
  • Bitnami/mongodb
ExpressionContext use-after-free in classic engine $lookup and $graphLookup aggregation operators 3 days ago
  • Fix available
  • Severity - 8.7 (High)
BIT-mongodb-2026-4147
  • Bitnami/mongodb
Stack memory disclosure in filemd5 command 3 days ago
  • Fix available
  • Severity - 7.1 (High)
BIT-minio-2026-39414
  • Bitnami/minio
MinIO affected a DoS via Unbounded Memory Allocation in S3 Select CSV Parsing 3 days ago
  • No fix available
  • Severity - 7.1 (High)
BIT-gitlab-2026-4916
  • Bitnami/gitlab
Missing Authorization in GitLab 3 days ago
  • Fix available
  • Severity - 2.7 (Low)
BIT-gitlab-2026-4332
  • Bitnami/gitlab
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab 3 days ago
  • Fix available
  • Severity - 5.4 (Medium)