CVE-2026-28358Disclosure(nocodb / nocodb)

LOWCVSS 5.3 · MEDIUM

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch nocodb nocodb systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, the password forgot endpoint returned different responses for registered and unregistered emails, allowing user enumeration. This issue has been patched in version 0.301.3.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-204

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • nocodb

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 4 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 3 classified signals
  • Peaked 2d ago at 2 mentions (2026-03-02); latest day: 1
  • 4 total mentions across 3 days

Affected systems

Vendors
Products
nocodb

Deep dive

Activity timeline4 mentions / 3d
01122Mentions · 2026-03-02: 2Mentions · 2026-03-03: 1Mentions · 2026-04-03: 1PoC Mentioned / Linked · 2026-04-03: 1Patch / Workaround · 2026-03-02: 1Technical Details · 2026-03-02: 2Technical Details · 2026-03-03: 1Technical Details · 2026-04-03: 103-0203-0304-03
Signal classification2 categories
Disclosure
375.0%
Patch
125.0%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-03-022
Disclosure1Patch1
2026-03-031
Disclosure1
2026-04-031
Disclosure1
Full discourse4 posts
  • pdnuclei-bot@pdnuclei_bot
    Disclosure

    🚨 CVE-2026-28358 - medium 🚨 NocoDB - User Enumeration > NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, ... 👾 https://cloud.projectdiscovery.io/library/CVE-2026-28358 @pdnuclei #NucleiTemplates #cve

    Post summary

    A medium‑severity CVE‑2026‑28358 affects NocoDB before version 0.301.3, allowing user enumeration. The post links to a reference page but does not provide an exploit, patch, or evidence of active attacks.

    00031205
    960 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-28358 User Enumeration Vulnerability in NocoDB Prior to Version 0.301.3 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-28358

    Post summary

    A user enumeration vulnerability in NocoDB versions prior to 0.301.3 has been disclosed as CVE-2026-28358, with no PoC, exploit, or patch details provided.

    0000054
    4.0K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-28358 NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, the password forgot endpoint returned different responses for registered and unre… https://www.cve.org/CVERecord?id=CVE-2026-28358 ----- Traducción: CVE-2026-28358 Noc… http://infoflow.cloud`

    Post summary

    CVE-2026-28358 is a user‑enumeration vulnerability in NocoDB’s password reset endpoint, disclosed with technical details but no PoC, exploit, or patch information.

    0000031
    55 followersView on X
  • CVE@CVEnew
    Patch

    CVE-2026-28358 NocoDB is software for building databases as spreadsheets. Prior to version 0.301.3, the password forgot endpoint returned different responses for registered and unre… https://www.cve.org/CVERecord?id=CVE-2026-28358

    Post summary

    The CVE describes a user‑enumeration flaw in NocoDB’s password reset endpoint, mitigated by upgrading to version 0.301.3.

    00000197
    56.6K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appnocodbnocodb---

Explore more