Metabase

Metabase · current 0.63.14

The current version of Metabase is 0.63.14 (as of 20/08/2026). patchletter checks the official source daily and emails you every new release.

Actively exploited vulnerabilities

The US cybersecurity agency CISA lists these vulnerabilities in its catalog of Known Exploited Vulnerabilities. Check your version and patch or mitigate promptly.

  • CVE-2026-72898Metabase SQL Injection Vulnerability

    10.0 critical · over the network, without login · CISA deadline was 14 Aug

  • CVE-2021-41277Metabase GeoJSON API Local File Inclusion Vulnerability

    7.5 high · over the network, without login · CISA deadline was 3 Dec 24

Source: CISA KEV. The CVE is matched to the product automatically — when in doubt, the linked NVD entry applies.

BSI security advisories

Advisories the German BSI (CERT-Bund) published for this product. Whether your version is affected is stated in the advisory itself.

All BSI advisories →

Version history & changelog · as detected by patchletter

VersionChannelDateNotes
0.63.14STABLE20/08/2026Release notes →

Frequently asked questions

What is the latest version of Metabase?
Metabase 0.63.14, released 20/08/2026. patchletter checks the vendor's official source daily for new releases.
Where can I find the Metabase release notes?
The version history above links to the vendor's official release notes where the vendor publishes them. patchletter deliberately stores no vendor full texts.
How do I get notified about new Metabase updates?
Free by email: patchletter reports every new release — instantly or bundled as a digest. Unsubscribe anytime with one click.

Never miss a Metabase update

We check the source daily and email you — instantly or as a digest. Free, one-click unsubscribe.

Watch Metabase

Embed this badge

Shows the current Metabase version and updates itself. Free to use, no account needed.

Metabase badge
[![Metabase](https://patchletter.com/badge/metabase.svg)](https://patchletter.com/en/software/metabase)
https://patchletter.com/badge/metabase.svg

Also available: ?v=eol (end of support) and ?v=cve (actively exploited).

Related tools in Monitoring & ITSM