Budibase是英国Budibase公司开源的一个用于在几分钟内创建内部应用程序、工作流和管理面板的低代码平台。 Budibase 3.39.3之前版本存在授权问题漏洞,该漏洞源于应用服务器未经验证的端点允许生成S3 PutObject预签名URL,可能导致公共调用者请求攻击者控制的存储桶和密钥值的签名上传URL。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-54350 | 10.0 CRITICAL | Budibase: Anonymous NoSQL operator injection via published-app query templates |
| CVE-2026-54352 | 9.6 CRITICAL | Budibase: Arbitrary file read by workspace-builder via PWA-zip symlink upload |
| CVE-2026-54353 | 8.5 HIGH | Budibase: Potential SSRF DNS rebinding bypass in outbound fetch validation |
| CVE-2026-54351 | 8.2 HIGH | Budibase: Mass Assignment in Webhook Trigger Allows Cross-Workspace Automation Execution v |
| CVE-2026-50132 | 7.3 HIGH | Budibase: Chat Identity Link Hijacking via Missing Consent & CSRF — Account Impersonation |
| CVE-2026-50137 | Budibase: POST /api/attachments/:datasourceId/url is unauthenticated and lets anonymous ca |
No comments yet