CVE-2026-100686 | Budibase server up to 3.44.x apps improper authorization
A vulnerability described as critical has been identified in Budibase server up to 3.44.x. This impacts an unknown function of the file /api/global/groups/:groupId/apps. Executing a manipulation can lead to improper authorization.
This vulnerability is handled as CVE-2026-100686. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More