CVE-2026-73300 UNKNOWN

CVE-2026-73300

Published: 2026-08-12

Description

Budibase is an open-source low-code platform. Prior to 3.40.0, the MySQL integration component in Budibase is configured with multipleStatements: true, enabling execution of multiple SQL statements in a single query. Attackers can inject malicious SQL commands through user input fields, leading to complete database compromise. This vulnerability is fixed in 3.40.0.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…