f
fluent bit
Security Risk Profile
72
/100
highSecurity Risk Score
Comprehensive risk assessment based on 14 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from February 26, 2024 to present
14
Total CVEs
7
Critical+High
0
Exploited
1
Unpatched
Threat Assessment
Avg CVSS
7.4
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
1
Critical/High
Risk Level
72/100
high
📈 1 in Last 30 Days
Severity Distribution
Critical
3High
4Medium
4Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
2Age Distribution
Common Weaknesses (CWE)
1
Path Traversal
2
2
Null Pointer Dereference
2
3
Buffer Overflow
1
4
Use After Free
1
Most Affected Products
1. Fluent Bit Fluent Bit13
2. Treasuredata Fluent Bit11
3. Microsoft azl3 fluent-bit 3.1.10-25
4. Microsoft azl3 fluent-bit 3.1.9-64
5. Microsoft cbl2 fluent-bit 3.0.6-44
Recent Vulnerabilities
See more →CVE-2026-61674
CVSS 9.2critical
Fluent Bit: Remote stack buffer overflow in Fluent Bit `out_forward` Secure-Forward `PONG` handler
Sep 21, 2026🔧 No Patch
https://seclists.org/oss-sec/2025/q4/227
unknown
5 CVE's fixed in Fluent Bit
Dec 2, 2025🔧 No Patch
https://seclists.org/oss-sec/2025/q4/223
unknown
5 CVE's fixed in Fluent Bit
Dec 1, 2025🔧 No Patch
https://seclists.org/oss-sec/2025/q4/207
unknown
5 CVE's fixed in Fluent Bit
Nov 26, 2025🔧 No Patch
CVE-2025-12978
CVSS 5.4medium
Nov 24, 2025🔧 No Patch
CVE-2025-12972
CVSS 5.3medium
Nov 24, 2025🔧 No Patch
CVE-2025-12977
CVSS 9.1critical
Nov 24, 2025
CVE-2025-12970
CVSS 8.8high
Nov 24, 2025
CVE-2025-29478
CVSS 5.5medium
Apr 7, 2025🔧 No Patch
CVE-2025-29477
CVSS 5.5medium
Apr 4, 2025🔧 No Patch
Monitor fluent bit in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.