Budibase Improper Control of Dynamically-Managed Code Resources vulnerability
- Severity:
- Medium
Description
Improper Control of Dynamically-Managed Code Resources in GitHub repository budibase/budibase prior to 1.3.20.
Recommendation
Update the @budibase/worker package to the latest compatible version. Followings are version details:
- Affected version(s): < 1.3.20
- Patched version(s): 1.3.20
References
Related Issues
- Budibase Improper Access Control vulnerability - CVE-2022-3225
- Improper Control of Generation of Code ('Code Injection') in @tygo-van-den-hurk/slyde - CVE-2026-26974
- Improper Control of Generation of Code in doT - CVE-2020-8141
- steal Inefficient Regular Expression Complexity vulnerability via string variable - CVE-2022-37259
- Tags:
- npm
- @budibase/worker
Anything's wrong? Let us know Last updated on February 27, 2026