Skip to main content

Vendor/product archive

usebruno / bruno CVEs

Beta · best-effort

4 CVEs tagged to usebruno / bruno1 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2026-34841

Published Apr 6, 2026

Bruno is an open source IDE for exploring and testing APIs. Prior to 3.2.1, Bruno was affected by a supply chain attack involving compromised versions of the axios npm package, wh…

CVSS 9.8 · Critical
evidence mentions
4
Buzz score
26.1
Vendor/product tagsBeta · best-effort

CVE-2025-30354

Published Apr 1, 2025

Bruno is an open source IDE for exploring and testing APIs. A bug in the assertion runtime caused assert expressions to run in Developer Mode, even if Safe Mode was selected. The…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2025-30210

Published Apr 1, 2025

Bruno is an open source IDE for exploring and testing APIs. Prior to 1.39.1, the custom tool-tip components which internally use react-tooltip were setting the content (in this ca…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-48463

Published Nov 4, 2024

Bruno before 1.29.1 uses Electron shell.openExternal without validation (of http or https) for opening windows within the Markdown docs viewer.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-4 of 4 CVEsPage 1 of 1