{
  "affected": [
    {
      "ranges": [
        {
          "database_specific": {
            "versions": [
              {
                "introduced": "0"
              },
              {
                "fixed": "0.41.9"
              },
              {
                "introduced": "1.0.0"
              },
              {
                "fixed": "1.41.9"
              }
            ]
          },
          "events": [
            {
              "introduced": "0"
            },
            {
              "fixed": "8dec3afd342cd843f151eef34a358ae5f8e551d0"
            }
          ],
          "repo": "https://github.com/metabase/metabase",
          "type": "GIT"
        },
        {
          "database_specific": {
            "versions": [
              {
                "introduced": "0.42.0"
              },
              {
                "fixed": "0.42.6"
              },
              {
                "introduced": "1.42.0"
              },
              {
                "fixed": "1.42.6"
              }
            ]
          },
          "events": [
            {
              "introduced": "de1264e1b2c3516181a3e115803abe32b74a1b7b"
            },
            {
              "fixed": "3a05e6289b7ba09c2c687bac95e176043ea35362"
            }
          ],
          "repo": "https://github.com/metabase/metabase",
          "type": "GIT"
        },
        {
          "database_specific": {
            "versions": [
              {
                "introduced": "0.43.0"
              },
              {
                "fixed": "0.43.7"
              },
              {
                "introduced": "1.43.0"
              },
              {
                "fixed": "1.43.7"
              }
            ]
          },
          "events": [
            {
              "introduced": "ee686fcfe5a006e228090a150365d4495bbb549c"
            },
            {
              "fixed": "053b484db79f4d4b6f29536618a77c577f6705d9"
            }
          ],
          "repo": "https://github.com/metabase/metabase",
          "type": "GIT"
        },
        {
          "database_specific": {
            "versions": [
              {
                "introduced": "0.44.0"
              },
              {
                "fixed": "0.44.5"
              },
              {
                "introduced": "1.44.0"
              },
              {
                "fixed": "1.44.5"
              }
            ]
          },
          "events": [
            {
              "introduced": "d3700f5368dc0b0c51b42adc293c6458766c948b"
            },
            {
              "fixed": "29fab4d4a06e77e68e227690636986534ba83275"
            }
          ],
          "repo": "https://github.com/metabase/metabase",
          "type": "GIT"
        }
      ]
    }
  ],
  "aliases": [
    "GHSA-gqpj-wcr3-p88v"
  ],
  "database_specific": {
    "cna_assigner": "GitHub_M",
    "cwe_ids": [
      "CWE-20",
      "CWE-441"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/39xxx/CVE-2022-39361.json"
  },
  "details": "Metabase is data visualization software. Prior to versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, 1.42.6, 0.41.9, and 1.41.9, H2 (Sample Database) could allow Remote Code Execution (RCE), which can be abused by users able to write SQL queries on H2 databases. This issue is patched in versions 0.44.5, 1.44.5, 0.43.7, 1.43.7, 0.42.6, 1.42.6, 0.41.9, and 1.41.9. Metabase no longer allows DDL statements in H2 native queries.",
  "id": "CVE-2022-39361",
  "modified": "2026-04-01T23:09:41.465062840Z",
  "published": "2022-10-26T00:00:00Z",
  "references": [
    {
      "type": "ADVISORY",
      "url": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/39xxx/CVE-2022-39361.json"
    },
    {
      "type": "ADVISORY",
      "url": "https://github.com/metabase/metabase/security/advisories/GHSA-gqpj-wcr3-p88v"
    },
    {
      "type": "ADVISORY",
      "url": "https://nvd.nist.gov/vuln/detail/CVE-2022-39361"
    }
  ],
  "schema_version": "1.7.3",
  "severity": [
    {
      "score": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
      "type": "CVSS_V3"
    }
  ],
  "summary": "Metabase vulnerable to Remote Code Execution via H2"
}