Bit Project maintains a narrowly focused product line centered on the Bit version-control and collaboration tool, which presents a modestly scoped vulnerability surface. The observed weakness class, uncontrolled search path elements, reflects the product's file-system interaction model and the risks inherent to path-resolution logic in local tool execution.
The number and severity of CVEs published that impact products developed by Bit Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-28954HIGH In Chris Walz bit before 1.0.5 on Windows, attackers can run arbitrary code via a .exe file in a crafted repository. | Mar 21, 2021 | 7.8 | 25 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bit Project.
Media articles that mention a CVE ID that affects a product developed by Bit Project — matched by CVE ID, not by vendor name.