Dbhub
Bytebase · 2 CVEs
CVE-2026-61788
HIGH
@bytebase/dbhub's read-only mode does not prevent database writes
Sep 24, 2026
CVE-2026-61742
CRITICAL
DBHub HTTP transport DNS rebinding allows unauthenticated browser-origin SQL execution
Sep 24, 2026
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-61788 | @bytebase/dbhub's read-only mode does not prevent database writes | HIGH | 0.30% | Sep 24, 2026 |
| CVE-2026-61742 | DBHub HTTP transport DNS rebinding allows unauthenticated browser-origin SQL execution | CRITICAL | 0.20% | Sep 24, 2026 |
Showing 1 to 2 of 2 CVEs