Database Exposure in Metabase Software by Metabase
CVE-2026-72900
7.1HIGH
What is CVE-2026-72900?
An authenticated low-privileged attacker can exploit a vulnerability in Metabase to gain unauthorized access to the entire application database. This flaw poses a significant risk as it allows sensitive data retrieval, potentially leading to broader security concerns for organizations using the software.
Affected Version(s)
Metabase x.58.0
Metabase x.59.0
Metabase x.60.0
