Metabase Arbitrary Code Execution via Unvalidated H2 Database Connection Details (CVE-2026-59826)
Security Advisory
CVE-2026-59826
Critical
Metabase
Affected:
- Metabase >= 1.55.0, < 1.58.15.1
- Metabase >= 1.56.0, < 1.58.15.1
- Metabase >= 1.57.0, < 1.58.15.1
- Metabase >= 1.58.0, < 1.58.15.1
- Metabase >= 1.59.0, < 1.59.12
Fixed in:
- 1.58.15.1
- 1.59.12
- 1.60.7
- 1.61.2
Referenced CVEs:
CVE-2026-59826 · 9.1
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.