Known Vulnerabilities for Server by Bitwarden
Listed below are 9 of the newest known vulnerabilities associated with "Server" by "Bitwarden".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-70620 json | Odysseus before commit 87babb5 contains a server-side request forgery vulnerability that allows admin-privileged attackers to... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-70619 json | Odysseus before commit bf325f6 contains a missing authorization vulnerability that allows authenticated non-admin users to ma... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-70591 json | Ghost is a Node.js content management system. From 0.10.0 until 6.54.1, a Server-Side Request Forgery in Ghost Admin image fe... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-70553 json | MaxSite CMS contains a remote code execution vulnerability that allows unauthenticated attackers to inject arbitrary PHP code... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-70491 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. In 0.10.2 and earlier, the GET /api/v1/... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-70490 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.8 until 0.11.0, the terminal W... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-70486 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.0 until 0.11.0, the terminal f... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-70476 json | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, several organization... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-70475 json | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the PUT /api/v1/exec... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-70473 json | Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flowise G... | Not Provided | 2026-08-04 | 2026-08-04 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Bitwarden | Server | 1.9.0 | |||
| Application | Bitwarden | Server | 1.8.2 | |||
| Application | Bitwarden | Server | 1.8.1 | |||
| Application | Bitwarden | Server | 1.8.0 | |||
| Application | Bitwarden | Server | 1.7.0 | |||
| Application | Bitwarden | Server | 1.6.0 | |||
| Application | Bitwarden | Server | 1.5.1 | |||
| Application | Bitwarden | Server | 1.5.0 | |||
| Application | Bitwarden | Server | 1.4.1 | |||
| Application | Bitwarden | Server | 1.4.0 | |||
| Application | Bitwarden | Server | 1.35.1 | |||
| Application | Bitwarden | Server | 1.32.0 | |||
| Application | Bitwarden | Server | 1.31.1 | |||
| Application | Bitwarden | Server | 1.31.0 | |||
| Application | Bitwarden | Server | 1.30.4 | |||
| Application | Bitwarden | Server | 1.30.3 | |||
| Application | Bitwarden | Server | 1.30.2 | |||
| Application | Bitwarden | Server | 1.30.1 | |||
| Application | Bitwarden | Server | 1.30.0 | |||
| Application | Bitwarden | Server | 1.3.4 |