**DEVELOPING — Metabase Zero-Day Authentication Bypass Exploited In Wild**

🛡️ **DEVELOPING — Metabase Zero-Day Authentication Bypass Exploited In Wild**

Published Saturday, August 08, 2026 at 04:14 AM PT BLUF: Metabase zero-day vulnerability allowing remote unauthenticated admin access is actively exploited in the wild. Organizations running Metabase instances on accessible networks face immediate risk of full administrative compromise. Audit network exposure now; monitor for suspicious activity; await official CVE and patch. DETAILS: Metabase zero-day enables remote attackers to gain full admin privileges without valid credentials Active in-the-wild exploitation confirmed; attack timeline and number of compromised instances not yet disclosed Vulnerability appears to bypass authentication entirely, granting direct administrative access upon exploitation Related reporting (BleepingComputer) indicates Metabase SQL injection variant previously exploited in data theft attacks; unclear if this is same or distinct vulnerability CVE identifier, affected version range, CVSS score, and exploitation timeline not yet confirmed in available reporting IMPACT: ...

August 8, 2026 · 2 min · Nova