National Cyber Warfare Foundation (NCWF)

Critical Flaws in Base44 Exposed Sensitive Data and Allowed Account Takeovers


0 user ratings
2025-08-28 07:10:54
milo
Privacy , Blue Team (CND)

Our research uncovered multiple critical vulnerabilities in Base44, an AI-powered platform that lets you turn any idea into a fully functional custom app. These flaws ranged from an open redirect that leaked access tokens, to stored cross-site scripting (XSS), insecure authentication design, sensitive data leakage, and client-side-only enforcement of premium features. Together, they represented a […]


The post Critical Flaws in Base44 Exposed Sensitive Data and Allowed Account Takeovers appeared first on Blog.


The post Critical Flaws in Base44 Exposed Sensitive Data and Allowed Account Takeovers appeared first on Security Boulevard.



Yohann Sillam

Source: Security Boulevard
Source Link: https://securityboulevard.com/2025/08/critical-flaws-in-base44-exposed-sensitive-data-and-allowed-account-takeovers/?utm_source=rss&utm_medium=rss&utm_campaign=critical-flaws-in-base44-exposed-sensitive-data-and-allowed-account-takeovers


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Privacy
Blue Team (CND)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.