
#CVE-2026-50136 - Supply Chain Attack in #Budibase. Unauthenticated endpoint exposes #S3 presigned URLs. #CVSS 7.4. No known patch. Mitigate immediately. #cybersecurity #devsecops #devops #git #github #gitlab #infosec More detailed info: https://www.valtersit.com/cve/CVE-2026-50136/
Post summary
The post announces CVE-2026-50136, a supply‑chain vulnerability in Budibase exposing unauthenticated S3 presigned URLs, notes a CVSS score of 7.4, and advises immediate mitigation while no patch is available.



