Skip to content
InYourGeek
visiteur@inyourgeek — shell
compléter historique ouvrirhelp
FR
← Back to the register

Metabase

CriticalSoftwareCVE-2026-72898

Actively exploited. Listed in CISA’s Known Exploited Vulnerabilities catalog: exploitation is observed, not theoretical.

What to do

Check the vendor advisory for the fixed version. This flaw is being actively exploited: patch now.

An injection flaw affects Metabase. Apply the vendor’s patch. It is being actively exploited: patch now.

What the flaw allows: User-supplied data is interpreted as instructions.

Ecosystem
Application software
Class
Injection
Published on
August 11, 2026

Sources

Entry built automatically from the cited security advisory, with no model rewriting. Acknowledged by the organisation or vendor, notified to an authority, or established by two independent sources.