Budibase — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
August 29, 2026
Last Seen
August 29, 2026

Related Threat Clusters

Recent Intelligence Reports

  • CVE-2026-82244: Budibase before 3.41.3 Remote Code Execution via Plugin eval() [CRITICAL] CVSS 9.4 Exploit Intelligence - Recent CVEs / 1d Budibase versions before 3.41.3 contain a remote code execution vulnerability in plugin handling that allows authenticated admin users to execute arbitrary code by uploading a malicious plugin tarball. The server calls eval() on plugin JavaScript files without sandboxing in the main Node.js process, enabling attackers to exfiltrate environment variables and c — exploit-intel.com · August 29, 2026
  • CVE-2026-82244 - Exploits & Severity — Feedly · August 29, 2026

CVSS v3.1 Breakdown