Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Sat, 26 Sep 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Budibase
Budibase server |
|
| Vendors & Products |
Budibase
Budibase server |
Sat, 26 Sep 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Budibase versions before 3.45.0 fail to disable external JSON reference resolution in the OpenAPI/Swagger import validator, allowing authenticated builders to read arbitrary local files. Attackers with builder access can embed file:// references in OpenAPI specifications submitted to the import endpoint to exfiltrate sensitive files including environment variables containing JWT secrets, API keys, and database credentials. | |
| Title | Budibase before 3.45.0 Arbitrary Local File Read via OpenAPI Import | |
| Weaknesses | CWE-200 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-09-26T13:23:42.415Z
Reserved: 2026-09-26T02:36:51.809Z
Link: CVE-2026-100680
No data.
Status : Received
Published: 2026-09-26T14:16:52.150
Modified: 2026-09-26T14:16:52.150
Link: CVE-2026-100680
No data.
OpenCVE Enrichment
Updated: 2026-09-26T17:00:14Z
-
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor