VYPR

pikiwidb

by OpenAtomFoundation

CVEs (1)

  • CVE-2026-84700HigSep 2, 2026
    risk 0.56cvss 8.6epss

    PikiwiDB (Pika) v3.5.7 exposes an internal protobuf replication server on a port derived from the client port plus 2000 (e.g. 11221 when the default client port 9221 is used) that does not authenticate incoming requests. Although requirepass is intended to gate replication — a…