Rankiteo Logo
Rankiteo
Leader in Cyber Underwriting
Loading...
NEWRankiteo Cyber Underwriting Desktop - Score, price, and bind from your desktop
WindowsmacOSLinux
Download
Metabase

Metabase Vendor Cyber Rating & Cyber Score

metabase.com

Metabase is bringing data tools with the elegance and simplicity of consumer products to the crufty world of enterprise business intelligence. We provide an opinionated open source starting point for how companies should measure, analyze and share their data as well as a suite of tools to deal with the complexity that arises as they grow. We're hiring and would love for you to join us 👋


Metabase A.I CyberSecurity Scoring

Metabase
Company Information
Website:http://www.metabase.com
Employees number:126
Number of followers:27,525
NAICS:518
Industry Type:Data Infrastructure and Analytics
Homepage:metabase.com
Metabase Risk Score (AI oriented)
Between 750 and 799
logo
MetabaseData Infrastructure and Analytics
Updated:
27/04/2026
750/1000
Fair
Baa
AaaAaABaaBaBCaaCaC
Powered by our proprietary A.I cyber incident model
Insurance prefers TPRM score to calculate premium
Metabase Global Score (TPRM)
xxxx
logo
MetabaseData Infrastructure and Analytics
•••
Score locked
Instant access to detailed risk factors
Vulnerabilities
Benchmark vs. industry & size peers
Findings

Metabase
MetabaseFair
Current Score
750Baa (FAIR)
01000
1 incidents
-5 avg impact
Incident timeline with MITRE ATT&CK tactics, techniques, and mitigations.
JUNE 2026
750Before Incident
MAY 2026
750Before Incident
APRIL 2026
755Before Incident
Vulnerability
27 Apr 2026Metabase
Metabase: PoC Exploit Released for Critical Metabase Enterprise RCE Vulnerability

Critical RCE Vulnerability in Metabase Enterprise Exploited in the Wild

750After Incident
CRITICAL-5
MET1777286018
Critical RCE Vulnerability in Metabase Enterprise Exploited in the Wild Security researchers have disclosed a severe remote code execution (RCE) vulnerability in Metabase Enterprise, tracked as CVE-2026-33725, after a proof-of-concept (PoC) exploit was publicly released. The flaw, stemming from an H2 JDBC INIT injection weakness during serialization imports, allows unauthenticated attackers to execute arbitrary code or access sensitive files on vulnerable systems. The vulnerability affects multiple Metabase Enterprise versions, including: - 1.47.0–1.54.21 - 1.55.0–1.55.21 - 1.56.0–1.56.21 - 1.57.0–1.57.15 - 1.58.0–1.58.9 - 1.59.0–1.59.3 A Python-based PoC exploit, published by Hakai Security researcher Diego Tellaroli, automates the attack chain, increasing the risk of widespread exploitation. While the tool includes an educational disclaimer, its availability lowers the barrier for threat actors to launch automated attacks against exposed instances. Metabase has released patched versions (1.59.4, 1.58.10, 1.57.16) to mitigate the flaw. Organizations unable to patch immediately are advised to restrict access to the Metabase admin interface, limit network exposure, and monitor logs for suspicious activity. Unpatched systems risk full compromise, data breaches, and potential lateral movement within enterprise networks.
INCIDENT DETAILS -
TYPE
Remote Code Execution (RCE)
IMPACT
Data Compromised: Sensitive files, arbitrary code executionSystems Affected: Metabase Enterprise instances (versions 1.47.0–1.54.21, 1.55.0–1.55.21, 1.56.0–1.56.21, 1.57.0–1.57.15, 1.58.0–1.58.9, 1.59.0–1.59.3)Operational Impact: Full system compromise, potential lateral movement within enterprise networks
DATA BREACH
Type Of Data Compromised: Sensitive files, arbitrary code executionSensitivity Of Data: High (potential for full system compromise)
MARCH 2026
755Before Incident
FEBRUARY 2026
755Before Incident
JANUARY 2026
755Before Incident
DECEMBER 2025
755Before Incident
NOVEMBER 2025
755Before Incident
OCTOBER 2025
755Before Incident
SEPTEMBER 2025
755Before Incident
AUGUST 2025
755Before Incident
JULY 2025
755Before Incident

Frequently Asked Questions

?
What is the current A.I Rankiteo Cyber Score for Metabase ?
?
What was Metabase's A.I Rankiteo Cyber Score in May 2026 ?
?
What was Metabase's A.I Rankiteo Cyber Score in April 2026 ?
?
What was Metabase's A.I Rankiteo Cyber Score in March 2026 ?
?
What was Metabase's A.I Rankiteo Cyber Score in February 2026 ?
?
What was Metabase's A.I Rankiteo Cyber Score in January 2026 ?
?
What was Metabase's A.I Rankiteo Cyber Score in December 2025 ?
?
What was Metabase's A.I Rankiteo Cyber Score in November 2025 ?
?
What was Metabase's A.I Rankiteo Cyber Score in October 2025 ?
?
What was Metabase's A.I Rankiteo Cyber Score in September 2025 ?
?
What was Metabase's A.I Rankiteo Cyber Score in August 2025 ?
?
What was Metabase's A.I Rankiteo Cyber Score in July 2025 ?
?
What is the average per-incident point impact on Metabase's A.I Rankiteo Cyber Score over the past 12 months ?
?
Where can I access detailed records of all cyber incidents associated with Metabase ?
?
Where can I find a summary of the A.I Rankiteo Risk Scoring methodology ?
?
Where can I view Metabase's profile page on Rankiteo ?
?
How accurate is the A.I Rankiteo Risk Scoring methodology ?