Back
Back to Blog

Metabase Security Incident: Downstream Impact Across Customer Environments

On this page

On August 6, 2026, Metabase disclosed active exploitation of a zero-day vulnerability affecting Metabase Cloud and self-hosted Metabase installations running affected releases in the 58 through 63 branches. The vulnerability allows an unauthenticated remote actor to inject SQL commands into the Metabase application database and potentially obtain administrative access to the Metabase instance.

The technical impact extends beyond compromise of the Metabase application database. Metabase stores configuration required to connect to external databases and data warehouses. According to the vendor advisory, an attacker who obtains administrative access can modify application configuration, retrieve stored database credentials, query data available through connected data sources, and export that data.

View the full Metabase incident report in VenariX

Framework, n8n, Kilo Code, and Tally have confirmed security incidents associated with affected Metabase environments. The incidents are separate breaches at separate organizations, but they share the same underlying technology exposure.

Metabase Vulnerability Details

GitHub Security Advisory GHSA-vwf4-m7j8-wcjf describes the issue as a critical, CVSS 10 SQL injection vulnerability in Metabase’s password-reset functionality. The flaw requires no authentication or user interaction and can be exploited remotely against exposed instances.

Update - August 13, 2026

On August 11, 2026, the Cybersecurity & Infrastructure Security Agency (CISA) assigned CVE-2026-72898 to the Metabase SQL injection vulnerability with a CVSS score of 10.

Exploitation Path and Database Access

The vulnerability affects the /api/session/reset_password endpoint and allows SQL injection into the Metabase application database. Successful exploitation can lead to administrative access to the Metabase instance, including access to configured database connections and their stored credentials.

Because Metabase is commonly connected to external databases and data warehouses, a compromise of the application can extend to those underlying data sources. The extent of that exposure depends on how the environment was configured. A deployment connected only to a restricted reporting database presents a substantially different risk from one connected to a production warehouse containing customer, account, or operational data.

For affected organizations, the investigation should establish which data sources were connected to Metabase, what privileges those credentials had, and whether database or query logs show unauthorized access. Metabase specifically recommends rotating connected-database credentials and reviewing warehouse logs after a suspected compromise.

Confirmed Downstream Incidents

Multiple organizations have confirmed data exposure associated with compromised Metabase Cloud environments. The scope of each incident depends on the data and permissions available through the affected deployment.

The Metabase vulnerability has already been tied to confirmed incidents at Framework, n8n, Kilo Code, and Tally. Each organization had its own Metabase deployment and exposed a different set of data.

n8n

n8n confirmed unauthorized activity against the Metabase environment it used internally for analytics. Its investigation found that the attacker queried 136 records containing names and email addresses. Five of those records also contained bcrypt password hashes associated with n8n Cloud accounts.

View the full n8n incident report in VenariX

n8n also reported that the queries returned a variable set of rows, which prevented the company from determining exactly which individual records had been returned.

Framework

Framework confirmed that its Metabase environment was accessed and that customer data was stolen. The exposed information included names, email addresses, phone numbers, login IP addresses, and billing and shipping addresses. Payment information was not included.

View the full Framework incident report in VenariX

Tally

Tally also disclosed unauthorized access through its Metabase environment. The exposed data included email addresses and password hashes, while form content and submitted responses were stored separately and were not affected.

View the full Tally incident report in VenariX

Kilo Code

Kilo Code confirmed that customer data accessible through its Metabase environment was exposed during the incident. The affected information included names, email addresses, billing addresses, location data, and, for a subset of users, partial or full prompts

View the full Kilo Code incident report in VenariX

The scope of each breach depends on the data sources and permissions configured in the affected Metabase environment.

Update - August 17, 2026

Since the initial publication of this article, additional organizations have confirmed security incidents associated with affected Metabase environments:

This brings the number of publicly confirmed downstream organizations tracked by VenariX to nine.

Detection

Metabase identified a recurring HTTP pattern associated with exploitation:

  • POST /api/session/reset_password returning HTTP 400

  • Followed by GET /api/user/current returning HTTP 200

Metabase states that this pattern in application or ingress logs indicates that the instance was likely compromised.

Organizations investigating an affected deployment should also review Metabase query history, database and warehouse audit logs, administrator accounts, API keys, and unexpected use of stored database credentials.

Remediation

Metabase patched its Cloud environment and released fixed versions for affected self-hosted branches. Customers should upgrade to the latest patched release available for their version. If an immediate upgrade is not possible, Metabase recommends temporarily blocking access to /api/session/reset_password.

For potentially exposed instances, Metabase also recommends:

  • Revoking active sessions

  • Reviewing administrator accounts and API keys

  • Rotating credentials for connected databases

  • Reviewing Metabase and warehouse logs for unauthorized activity.

Credential rotation is especially important if exploitation is suspected, because patching the application does not invalidate credentials that may already have been exposed.

Track Metabase Exposure in VenariX

VenariX allows users to track downstream exposure tied to specific technologies. For the Metabase incident, users can filter incidents by Platforms & Tools and search for Metabase Cloud to identify organizations with confirmed exposure linked to the vulnerability.

Framework, n8n, Tally, and Kilo Code appear as separate incidents, allowing each breach to retain its own affected data, scope, and impact while remaining searchable through the common Metabase technology.

As additional organizations disclose Metabase-related incidents, they can be identified through the same filter.


Track Metabase-related incidents in VenariX using the Platforms & Tools filter.

Explore VenariX →

VenariX

Every security decision,
backed by real data.

Start with a free plan or try Pro free for one week.