CVE-2025-5895 | Metabase 54.10 dom.js parseDataUri redos (ID 57011)

SecurityVulns

A vulnerability was found in Metabase 54.10. It has been classified as problematic. This affects the function parseDataUri of the file frontend/src/metabase/lib/dom.js. The manipulation leads to inefficient regular expression complexity.

This vulnerability is uniquely identified as CVE-2025-5895. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.

It is recommended to apply a patch to fix this issue.VulDB Recent EntriesRead More