Skip to content

bunkerweb

Network Security

An open‑source Web Application Firewall (WAF) that works as a full‑featured web server to make your services "secure by default"

Python Latest v1.6.13 · 10d ago Security brief →

Features

  • Acts as a complete web server and WAF, providing out‑of‑the‑box security for any deployed service
  • Seamless integration into Linux hosts, Docker containers, Swarm clusters, Kubernetes pods, etc.
  • Highly customizable via configuration files or an intuitive web UI
  • Extensible plugin system for adding extra security modules as needed

Recent releases

View all 7 releases →
Upgrade now
v1.6.13 Breaking risk
Auth RCE / SSRF Dependencies

Security fixes + new features

Upgrade now
v1.6.12 Breaking risk
RCE / SSRF Breaking upgrade

NGINX fix, proxy TLS, worker cap, UI logs, packaging

Upgrade now
v1.6.11 Security relevant
RCE / SSRF Breaking upgrade

nginx security fix

Upgrade now
v1.6.10 Breaking risk
Auth RBAC Dependencies +2 more

Security + feature updates

v1.6.9 Security relevant
Security fixes
  • SafeFileSystemCache for session fixation prevention
  • Filename sanitization to prevent path traversal
  • IP address validation across ban endpoints

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

About

Stars
10,729
Forks
635
Languages
Python Shell HTML

Install & Platforms

Install via
docker
Platforms
linux

Community & Support

Beta — feedback welcome: [email protected]