Evidence · DiggingBeagle record
CVE Record: CVE-2025-48757
The MITRE CVE record describes insufficient Row Level Security in Lovable-generated sites through April 15, 2025 and records the issue as disputed because the supplier says customers are responsible for protecting their application data.
- Published
- May 30, 2025
- Source role
- government record
Evidence record
The MITRE CVE record describes insufficient Row Level Security in Lovable-generated sites through April 15, 2025 and records the issue as disputed because the supplier says customers are responsible for protecting their application data.
Claim-level citations (1)
- supportsA scan of 1,645 Lovable projects found 170 with inadequate database RLS: The public CVE record describes insufficient RLS allowing unauthenticated reads or writes but records the issue as disputed because Lovable says customers are responsible for protecting their application data.
CVE description, disputed tag and supplier note