Metabase Patches Critical Zero-Day SQL Injection Vulnerability

TL;DR. Metabase released urgent patches for a critical SQL injection vulnerability actively exploited as a zero-day in the wild. - The flaw allows unauthenticated remote attackers to gain administrative access and steal credentials. - Metabase Cloud instances are updated; self-hosting users must apply patches immediately. - Attackers targeted Metabase Cloud, leading to immediate blocking of endpoints and a swift patch.

Sources

Back to QLANKR News