home.social

#budibase — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #budibase, aggregated by home.social.

fetched live
  1. Budibase: 43 CVEs, avg CVSS 8.14, max 10. 93% unpatched. Trust Score: D. Low-code doesn’t mean low risk. Patch now. #Budibase #infosec #cybersecurity

    valtersit.com/vendors/budibase/

  2. Budibase: 43 CVEs, avg CVSS 8.14, 93% unpatched. Trust Score: D. Top weakness: SSRF (CWE-918). Low-code ≠ low risk. Patch now! #Budibase #cybersecurity #lowcode

    valtersit.com/vendors/budibase/

  3. CVE-2026-54350 - Critical CSRF in Budibase. CVSS 10. Unauthenticated attackers can read/modify all DB documents via HTTP. No patch available. Disable public write queries immediately. #CVE #Budibase #infosec

    valtersit.com/cve/CVE-2026-543

  4. CVE-2026-54352 - Critical Path Traversal in Budibase. Symlink extraction allows reading arbitrary files. CVSS 9.6. Unpatched - limit builder access immediately. #CVE #Budibase #infosec

    valtersit.com/cve/CVE-2026-543

  5. CVE-2026-50136 - Supply Chain Attack in Budibase. Unauthenticated endpoint exposes S3 presigned URLs. CVSS 7.4. No known patch. Mitigate immediately. #CVE #Budibase #infosec

    valtersit.com/cve/CVE-2026-501

  6. Ummm, #budibase you trying to tick people off?

    >> The free cloud plan is being replaced with our new Pro plan - which starts at $10/month.

    >> To continue to use Budibase Cloud, upgrade to the new Pro plan.
    If you do not upgrade, your cloud tenant will be locked in 7 days.

    Seven days? Glad I've been using one of your competition...

  7. Ummm, #budibase you trying to tick people off?

    >> The free cloud plan is being replaced with our new Pro plan - which starts at $10/month.

    >> To continue to use Budibase Cloud, upgrade to the new Pro plan.
    If you do not upgrade, your cloud tenant will be locked in 7 days.

    Seven days? Glad I've been using one of your competition...

  8. Budibase: 36 CVEs, avg CVSS 8.07, 94% unpatched. Trust Score: D. Top weakness: SSRF (CWE-918). Low-code, high risk. #Budibase #infosec #cybersecurity

    valtersit.com/vendors/budibase/

  9. Goodbye #AppFlowy, who follow #Budibase and #Plane into a strictly limited open core model, rendering them unusable for small communities.

    github.com/AppFlowy-IO/AppFlow

  10. Goodbye #AppFlowy, who follow #Budibase and #Plane into a strictly limited open core model, rendering them unusable for small communities.

    github.com/AppFlowy-IO/AppFlow

  11. Приоритизация уязвимостей с EPSS в кибербезопасности

    Одна из главных проблем в управлении уязвимостями — огромный объём задач при ограниченных ресурсах. Не все уязвимости одинаково опасны, и не каждая требует срочного устранения. Даже уязвимость с высоким уровнем риска может не представлять реальной угрозы, если вероятность разработки эксплойта для неё крайне мала. Именно здесь на помощь приходит EPSS (Exploit Prediction Scoring System) — метрика, которая становится ключевым фильтром при расстановке приоритетов. В предыдущей статье я описал решение по приоритизации уязвимостей на базе no-code-платформы Budibase. В этой статье покажу, как я реализовал поддержку EPSS и включил этот показатель в фильтрацию и анализ приоритета для оптимизации устранения уязвимостей. Реализовав такую приоритизацию у себя, можно значительно повысить эффективность устранения уязвимостей, которые представляют угрозу. Я провел исследование — на рынке РФ во многих решениях по управлению уязвимостями EPSS до сих пор отсутствует. Хорошие новости в том, что приоритезацию с EPSS можно реализовать и без дорогостоящих решений.

    habr.com/ru/articles/935690/

    #информационная_безопасность #уязвимости #управление_уязвимостями #кибербезопасность #budibase #nocode #cybersecurity #vulnerability #infosec

  12. Управление уязвимостями с помощью no-code решения на Budibase

    В данном цикле статей я опишу реализацию дашбордов по уязвимостям на no-code решении Budibase, разберу собственную систему приоритизации уязвимостей, покажу, как повысить эффективность устранения угроз с помощью EPSS, и как объединить данные из разных решений в области кибербезопасности. Основная задача - создать внутреннее приложение, способное предоставить всем участникам процесса (SOC, системным администраторам и руководству задействованных подразделений) доступ к актуальной статистике и понимание текущей ситуации по уязвимостям. Вторая задача - реализовать приоритизацию уязвимостей более эффективным способом.

    habr.com/ru/articles/933720/

    #budibase #информационная_безопасность #управление_уязвимостями #уязвимости #кибербезопасность #cybersecurity #vulnerabilities #nocode

  13. I just wanted to post something about having another look at #Budibase as a low-code platform and realized, that I wrote the exact same thing exactly one year ago 🤨

  14. I just wanted to post something about having another look at #Budibase as a low-code platform and realized, that I wrote the exact same thing exactly one year ago 🤨

  15. I've heard of #lowcode and #nocode platforms, but always ignored them and never understood their purpose. But somewhere in the middle of 2023 our team manager suggested that we try #budibase as a "form manipulator". I liked it just as I started to use it, and I see lots of opportunities for us, because at our company we don't have already existing services that allow us to create business tools.

  16. The last couple of days I had a look at low-code platforms for the first time, namely #budibase and #appsmith. Sure, you still have to know what you're doing, especially regarding SQL, but I actually like the approach.

    Maybe I'll have another look at some of my discarded hobby projects after all.

  17. The last couple of days I had a look at low-code platforms for the first time, namely #budibase and #appsmith. Sure, you still have to know what you're doing, especially regarding SQL, but I actually like the approach.

    Maybe I'll have another look at some of my discarded hobby projects after all.

  18. Low-Code-Tool Budibase wird übersichtlicher und einsteigerfreundlicher

    Ein Update bringt neue Funktionen in das quelloffene Entwicklungstool für Business-Apps Budibase. Es liefert unter anderem eine bessere Gesamtansicht.

    heise.de/news/Low-Code-Tool-Bu

    #Budibase #LinuxundOpenSource #Softwareentwicklung #News

  19. Low-Code-Tool Budibase wird übersichtlicher und einsteigerfreundlicher

    Ein Update bringt neue Funktionen in das quelloffene Entwicklungstool für Business-Apps Budibase. Es liefert unter anderem eine bessere Gesamtansicht.

    heise.de/news/Low-Code-Tool-Bu

    #Budibase #LinuxundOpenSource #Softwareentwicklung #News

  20. Budibase is a free and open-source development platform that helps you build internal apps on your own infrastructure, in minutes, not months

    github.com/Budibase/budibase

    #budibase #development #foss #opensource #software #platform #lowcode #selfhost