Critical vulnerability found in Base44 coding platform

View organization page for Wiz

356,134 followers

🚨 We found a critical vulnerability in the popular Vibe Coding Platform Base44. Wiz Research just found a critical vulnerability in the popular vibe coding platform Base44, that could have allowed anyone to access private applications. Enterprises could have had their internal tools, AI chatbots, and private proprietary information exposed with a simple-to-exploit logic flaw. Our team responsibly disclosed the issue, and it was fixed by Base44 & Wix in under 24 hours. The bigger story >> Vibe coding is having a moment. Lovable's lightning fast trajectory to unicorn status; Base44’s record exit; #Microsoft entering the field with #Github Spark, and even Replit's tragic database wipe all reinforce the reality that vibe coding platforms are everywhere. The latest discovery from our team calls into question the risk inherent in this incredibly popular technology. We're using AI to run fast, but at what cost? 🧠 Full research breakdown → https://xmrrwallet.com/cmx.plnkd.in/ec5XRehJ

  • No alternative text description for this image
Maya Doron

Growth Marketing Manager @Wiz | Marketing & Communications

4d

🤯

Danielle A.

Threat Researcher @ Wiz

4d

The best Gal Nagli 🙌🏻

Ross Fletcher CertRP

🚀 Talent Sourcer @ Wiz🧙🪄 | Connecting Top Talent with Game-Changing Opportunities 🤝 | EMEA Hiring 🌍

4d

🫨

Like
Reply

These little swagger docs often prove to be very useful in pentests, well done for chaining things together Gal Nagli 👏

Like
Reply
Alessandro Quadrini

DevSecOps Tech Lead | AWS SAA | ⎈ Kubestronaut | Cloud Native Enthusiast

4d

Wiz Sec Team working overtime!

Like
Reply
Sam Chehab

Head of Security and IT

4d

Gal Nagli strikes again!!!

Brandon W.

Major Accounts @ Wiz

4d

Commenting for reach 👀

Stacey L.

Security Operations Analyst @ Wiz✨| Threat Hunter 🏹

4d

wowowow. The time disclosure -> to remediation/fix!! This is why research and collaboration is so important!! Nicely done Gal Nagli & Wiz Research Team!! 👏 ✨

Vibe coding is a gift that keeps on giving

  • No alternative text description for this image
Mykola Savin

Chief Engineer @ Full Send Security | Zero-to-One Builder | Passionate about AI

4d

Vibe coding agent requires agent for fixing security issues

Like
Reply
See more comments

To view or add a comment, sign in

Explore topics