Vulnerabilidades em Budibase

81 resultados
Análise Vexday

Budibase apresenta volume elevado de vulnerabilidades (44 CVEs), com 29 publicadas nos últimos 90 dias, indicando ritmo acelerado de descobertas. Não há exploração ativa documentada (0 KEV), mas 10 vulnerabilidades críticas foram registradas, predominantemente relacionadas a requisições HTTP não validadas (CWE-918), padrão típico de plataformas web. O risco é substancial em gravidade potencial, embora atualmente sem evidência de aproveitamento em campo.

CVE-2026-50137HIGHBudibase: POST /api/attachments/:datasourceId/url is unauthenticated and lets anonymous callers mint S3 PUT pre-signed URLs using stored datasource IAM credentialsEPSS 0.4%CVE-2026-73302CRITICALBudibase: OIDC SSO account takeover: incoming identity linked by email without checking email_verifiedEPSS 0.4%CVE-2026-73307MEDIUMBudibase: SSRF via bare fetch() in uploadUrl during AI table generationEPSS 0.4%CVE-2026-31818CRITICALBudibase: Server-Side Request Forgery via REST Connector with Empty Default BlacklistEPSS 0.4%CVE-2026-73308MEDIUMBudibase: OAuth2 Token Disclosure via Automation Test Results Broadcast to Other BuildersEPSS 0.4%CVE-2026-33226HIGHBudibase Unrestricted Server-Side Request Forgery (SSRF) via REST Datasource Query PreviewEPSS 0.4%CVE-2026-27702CRITICALBudibase Vulnerable to Remote Code Execution via Unsafe eval() in View Filter Map Function (Budibase Cloud)EPSS 0.3%CVE-2026-35218HIGHBudibase: Stored XSS via unsanitized entity names rendered with {@html} in Builder Command PaletteEPSS 0.3%CVE-2026-73408HIGHBudibase: MySQL DESCRIBE Backtick Injection via multipleStatements in Database ConnectorEPSS 0.3%CVE-2026-48128MEDIUMBudibase: SSRF via User-Controlled queryId in Automation Execute Query StepEPSS 0.3%CVE-2026-72856HIGHBudibase before 3.40.0 Authentication Bypass via Tenant Owner EmailEPSS 0.3%CVE-2026-67311HIGHBudibase before 3.38.1 SSRF Blacklist Bypass via HTTP RedirectEPSS 0.3%CVE-2026-73301MEDIUMBudibase: Missing RBAC on GET /api/global/groups allows BASIC users to enumerate all tenant groups and role mappingsEPSS 0.3%CVE-2026-64657HIGHBudibase: Database Connector SQL Injections in PostgreSQL, MS SQL, and MySQLEPSS 0.3%CVE-2026-82242HIGHBudibase before 3.41.3 Cross-Application Resource Injection via Missing AuthorizationEPSS 0.3%CVE-2026-25043MEDIUMBudibase: Unauthenticated Password Reset Endpoint Lacks Rate Limiting, Enabling Email FloodingEPSS 0.3%CVE-2026-48150CRITICALBudibase: Workspace-scoped builder escalates to global admin via /api/public/v1/roles/assignEPSS 0.3%CVE-2026-25045HIGHBudibase Critical Privilege Escalation & IDOR via Missing RBAC on User Role Management (Creator-Role)EPSS 0.3%CVE-2026-73618HIGHBudibase Server before 3.40.0 NoSQL Injection via JSON ParameterEPSS 0.3%CVE-2026-50136HIGHBudibase: Unauthenticated S3 signed upload URL generation allows arbitrary writes with stored datasource credentialsEPSS 0.3%