Security News

Cybersecurity news aggregator

🔓
CRITICAL Vulnerabilities BSI Germany

[NEU] [kritisch] Budibase: Schwachstelle ermöglicht SQL-Injection

A critical SQL injection vulnerability (CVSS 10.0) in the open-source Budibase low-code platform allows unauthenticated remote attackers to execute arbitrary SQL commands. The flaw affects Budibase versions prior to 3.39.12, and users must upgrade to version 3.39.12 or later to remediate the issue.
Read Full Article →

[WID-SEC-2026-2041] Budibase: Schwachstelle ermöglicht SQL-Injection CVSS Base Score 10.0 (kritisch) CVSS Temporal Score 9.0 (kritisch) Remoteangriff ja Datum 23.06.2026 Stand 24.06.2026 Mitigation ja Betroffene Systeme Betriebssystem Linux Sonstiges UNIX Produktbeschreibung Budibase ist eine quelloffene Low-Code-Plattform für die Erstellung interner Anwendungen, wie z. B. Verwaltungspanels. Produkte 23.06.2026 Open Source Budibase <3.39.12 Angriff Angriff Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Budibase ausnutzen, um einen SQL-Injection Angriff durchzuführen. CVE Informationen Versionshistorie Feedback zum Advisory geben

Share this article