PatchSiren

Bitnami CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM Bitnami CVE published 2026-06-18

CVE-2026-47847

The Bitnami MariaDB Galera container images and Helm chart have a hardcoded default credential vulnerability. The MARIADB_REPLICATION_USER and MARIADB_REPLICATION_PASSWORD environment variables default to 'monitor' and 'monitor', respectively. This user has REPLICATION CLIENT privileges from any host. The Bitnami Helm chart for MariaDB Galera did not expose parameters to configure this user's credentials, [truncated]