CVE-2026-35216 | Budibase up to 3.33.3 Public Webhook Endpoint os command injection (EUVD-2026-18795)
A vulnerability was found in Budibase up to 3.33.3. It has been rated as critical. Impacted is an unknown function of the component Public Webhook Endpoint. Performing a manipulation results in os command injection.
This vulnerability was named CVE-2026-35216. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.