Metabase Zero-Day Exploited in Wild Allows Admin Access Without Authentication
A zero-day vulnerability in Metabase is being exploited in the wild, allowing attackers to gain admin access without authentication. The flaw was reported by The Hacker News on August 8, 2026. The exploit enables unauthorized administrative control, posing a significant security risk to Metabase instances.
Active exploitation of a Metabase zero-day can lead to unauthorized admin access, compromising sensitive data.


