CVE-2026-72898 | Metabase up to x.63.4 Password Reset sql injection

SecurityVulns

A vulnerability classified as critical was found in Metabase up to x.63.4. This issue affects some unknown processing of the component Password Reset. Such manipulation leads to sql injection.

This vulnerability is uniquely identified as CVE-2026-72898. The attack can be launched remotely. No exploit exists.

Upgrading the affected component is advised.VulDB Recent EntriesRead More