# sonatype-2026-005083

@budibase/server - Improper Authorization

Published Jul 25, 2026

[Advisory · GHSA-pvcr-8mvp-w8qr](https://github.com/advisories/GHSA-pvcr-8mvp-w8qr)

## CVSS Score
**High**  
7.7

### Security Details

#### Components Impacted

- Sonatype Research

### sonatype-2026-005083 Security Details

**CVE ID**  
sonatype-2026-005083

**CWE**  
N/A

**CVE Description**  
@budibase/server - Improper Authorization

**Published**  
Jul 25, 2026

**CVSS Score & Severity**  
7.7 High

**CVSS Vector**  
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:N

**EPSS Score**  
0%

**Malware**  
malware

**KEV Status**  
Not in KEV Catalog: No known exploits

**Affected Ecosystems**  
affected

**Source**  
Sonatype

**References**  
[GitHub · Advisory · GHSA-pvcr-8mvp-w8qr](https://github.com/advisories/GHSA-pvcr-8mvp-w8qr "https://github.com/advisories/GHSA-pvcr-8mvp-w8qr")

sonatype-2026-005083 | Security Details | Sonatype Guide | Sonatype Guide
