**Source : The Hacker News | 8 août 2026** Metabase has warned that a maximum-severity security flaw impacting its business intelligence and data visualization software package has been exploited in the wild as a zero-day. The vulnerability (CVSS score: 10.0), which does not carry a CVE identifier, allows an unauthenticated remote attacker to inject arbitrary SQL into the Metabase application database, enabling them to gain 👉 **Lire l'article complet sur The Hacker News :** [https://thehackernews.com/2026/08/metabase-zero-day-exploited-in-wild.html](https://thehackernews.com/2026/08/metabase-zero-day-exploited-in-wild.html)