As cited
Copy frozen at (site build).
vulnerabilities
Metabase zero-day exploited to access Framework customer data
Framework, a laptop manufacturer, suffered a data breach through exploitation of a zero-day vulnerability in Metabase business intelligence software. Attackers accessed customer personal information including names, email addresses, phone numbers, and physical addresses, but not payment or order data. Framework disclosed the incident to affected customers.
Why it matters: Framework customers should monitor for phishing and social engineering targeting exposed contact information; organizations using Metabase should assess exposure to this zero-day immediately and await patch availability.
- Source published
- First seen by Cybersecurity Tracker