The next major version of the self-contained analytics database will offer async I/O, a new SQL parser, and much more.
The critical zero-day can provide direct SQL access to Metabase’s underlying database, potentially exposing credentials, API keys, and other sensitive data.
A zero-day SQL-injection vulnerability in Metabase Cloud is under exploitation in the wild, and it could spell trouble for many downstream organizations. Metabase, which provides AI-driven business ...
A critical Metabase SQL injection vulnerability was exploited in zero-day attacks to breach customer instances in data theft ...
Metabase SQL injection vulnerability gave unauthenticated attackers full admin access and downstream database credentials, breaching five companies. CISA added CVSS 10.0 CVE-2026-72898 and Cisco ASA ...
Cavern uses DNS A records to switch between direct HTTPS and Google Apps Script for C2, expanding an Iranian-linked toolkit ...
Legal AI solutions provider LexisNexis shut down Diligence, Newsdesk, and Metabase API data services following a cyber attack ...
A critical-severity SQL injection vulnerability in Metabase has been exploited as a zero-day to gain administrative privileges.
LexisNexis took its Diligence, Metabase API, and Newsdesk services offline last week after detecting "unusual activity on ...
LexisNexis took its Diligence, Metabase API, and Newsdesk services offline as part of its response to unusual activity on servers hosted and managed by an unnamed third-party vendor.
Centauri Systems launches Launchpad, a fully managed developer portal for Apigee X, now available on Google Cloud ...
A critical Gremlin API vulnerability exposed a path to any Cosmos DB instance, including Microsoft’s own services, before the company redesigned the platform.