CVE-2026-73303 | Budibase up to 3.39.x Email Change Workflow /api/v2/email accountId session fixiation
A vulnerability was found in Budibase up to 3.39.x. It has been declared as critical. Affected is an unknown function of the file /api/v2/email of the component Email Change Workflow. Such manipulation of the argument accountId leads to session fixiation.
This vulnerability is traded as CVE-2026-73303. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More