CVE-2026-73307
Last modified
CVE-2026-73307 is a medium-severity vulnerability rated 4.9/10 on the CVSS scale. Budibase is an open-source low-code platform. Prior to 3.39.4, uploadUrl in packages/server/src/utilities/fileUtils.ts used a bare server-side fetch for string attachment values passed by processAttachments in packages/server/src/sdk/workspace/ai/helpers/rows.ts.
Description
Budibase is an open-source low-code platform. Prior to 3.39.4, uploadUrl in packages/server/src/utilities/fileUtils.ts used a bare server-side fetch for string attachment values passed by processAttachments in packages/server/src/sdk/workspace/ai/helpers/rows.ts. A builder with the AI table-generation feature could cause an attachment value to reference an internal service or cloud metadata endpoint, and the response would be stored as an attachment without fetchWithBlacklist validation. This issue is fixed in version 3.39.4.
Metrics
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:N/SC:H/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Budibase | budibase | < 3.39.4 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-73307?
How severe is CVE-2026-73307?
How do I fix CVE-2026-73307?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-73301Budibase is an open-source low-code platform. Prior to 3.39.…4.3
- CVE-2026-73302Budibase is an open-source low-code platform. Prior to 3.39.…9
- CVE-2026-73303Budibase is an open-source low-code platform. Prior to 3.40.…8.2
- CVE-2026-73304Budibase is an open-source low-code platform. Prior to 3.39.…4.9
- CVE-2026-73305Budibase is an open-source low-code platform. Prior to 3.39.…8.8
- CVE-2026-73306Budibase is an open-source low-code platform. Prior to 3.39.…5.3
- CVE-2026-73308Budibase is an open-source low-code platform. Prior to 3.39.…5.7
- CVE-2026-7332The LatePoint – Calendar Booking Plugin for Appointments and…7.2
- CVE-2026-73323Rejected reason: This CVE ID has been rejected or withdrawn …
- CVE-2026-73325Fujitsu Research's OneCompression library 1.2.0 contains an …8.4
- CVE-2026-73326CamaleonCMS contains a missing authorization vulnerability t…7.6
- CVE-2026-73327Rejected reason: This CVE ID has been rejected or withdrawn …
Are you affected by CVE-2026-73307?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
