CVE-2016-10561: Bitty Project Bitty

Medium severity, CVSS 5.3. EPSS: 1.5% chance of exploitation in the next 30 days.

Bitty is a development web server tool that functions similar to `python -m SimpleHTTPServer`. Version 0.2.10 has a directory traversal vulnerability that is exploitable via the URL path in GET requests.

Affected products

Published 2018-05-31. Last modified 2026-06-17.