⤷ Title: Supabase + Appsmith (supabase-js + headers)
════════════════════════
𐀪 Author: Mark Woollen
════════════════════════
ⴵ Time: Tue, 31 Dec 2024 22:10:24 GMT
════════════════════════
⌗ Tags: #javascript #supabase #appsmith
════════════════════════
𐀪 Author: Mark Woollen
════════════════════════
ⴵ Time: Tue, 31 Dec 2024 22:10:24 GMT
════════════════════════
⌗ Tags: #javascript #supabase #appsmith
Medium
Supabase + Appsmith (supabase-js + headers)
Appsmith (front-end “low-code”) and Supabase (Postgres + REST stack) are an interesting combination. Free = Fun. Stable = Compelling. Low…
⤷ Title: Securing Your Next.js API Calls with Supabase Service Keys
════════════════════════
𐀪 Author: Phoebe Theresa Peters
════════════════════════
ⴵ Time: Mon, 06 Jan 2025 05:38:16 GMT
════════════════════════
⌗ Tags: #security #supabase #programming #javascript
════════════════════════
𐀪 Author: Phoebe Theresa Peters
════════════════════════
ⴵ Time: Mon, 06 Jan 2025 05:38:16 GMT
════════════════════════
⌗ Tags: #security #supabase #programming #javascript
Medium
Securing Your Next.js API Calls with Supabase Service Keys
I am creating an API call in a Nextjs (with Supabase) application which need to be secured. For my application a user should be logged which is enforced by the middleware and the await…
⤷ Title: How to add Google oAuth in Nextjs with Supabase Auth | Login with Google
════════════════════════
𐀪 Author: Anjan Shomodder
════════════════════════
ⴵ Time: Tue, 07 Jan 2025 18:35:13 GMT
════════════════════════
⌗ Tags: #reactjs #nextjs #javascript #supabase
════════════════════════
𐀪 Author: Anjan Shomodder
════════════════════════
ⴵ Time: Tue, 07 Jan 2025 18:35:13 GMT
════════════════════════
⌗ Tags: #reactjs #nextjs #javascript #supabase
Medium
How to add Google oAuth in Nextjs with Supabase Auth | Login with Google
This blog will teach you how to add Google oAuth to your Nextjs app with Supabase Auth. I will cover:
⤷ Title: CVE-2025-48757: Lovable’s Row-Level Security Breakdown Exposes Sensitive Data Across Hundreds of Projects
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:38:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_48757 #cybersecurity #Data Breach #Linkable #Lovable #low_code #RLS #Row_Level Security #Supabase #Vulnerability #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:38:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_48757 #cybersecurity #Data Breach #Linkable #Lovable #low_code #RLS #Row_Level Security #Supabase #Vulnerability #Web Security
Daily CyberSecurity
CVE-2025-48757: Lovable’s Row-Level Security Breakdown Exposes Sensitive Data Across Hundreds of Projects
A critical RLS vulnerability (CVSS 9.3) in the Lovable low-code platform exposes sensitive user data and allows unauthorized modification.
⤷ Title: I Breached a Hacker’s Platform by Reading Their Source Code
════════════════════════
𐀪 Author: KonaN
════════════════════════
ⴵ Time: Mon, 28 Jul 2025 09:01:39 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #hacking #technology #supabase
════════════════════════
𐀪 Author: KonaN
════════════════════════
ⴵ Time: Mon, 28 Jul 2025 09:01:39 GMT
════════════════════════
⌗ Tags: #bug_bounty #cybersecurity #hacking #technology #supabase
Medium
I Breached a Hacker’s Platform by Reading Their Source Code
A CTF form and a black hat hacker — both had one thing in common: I got admin.
⤷ Title: When Supabase Api Key Misuse Turns Vibecoding Into Vibeleaking
════════════════════════
𐀪 Author: Parth Rana
════════════════════════
ⴵ Time: Sat, 06 Sep 2025 02:01:44 GMT
════════════════════════
⌗ Tags: #vibe_coding #supabase #ai #software_development #bug_bounty
════════════════════════
𐀪 Author: Parth Rana
════════════════════════
ⴵ Time: Sat, 06 Sep 2025 02:01:44 GMT
════════════════════════
⌗ Tags: #vibe_coding #supabase #ai #software_development #bug_bounty
Medium
When Supabase Api Key Misuse Turns Vibecoding Into Vibeleaking
The Hype & The Context
⤷ Title: How I Found a Broken Subscription Logic That Unlocked Paid Courses for Free
════════════════════════
𐀪 Author: Harshdeep Singh
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 10:55:44 GMT
════════════════════════
⌗ Tags: #web_development #react #hacking #supabase #ethical_hacking
════════════════════════
𐀪 Author: Harshdeep Singh
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 10:55:44 GMT
════════════════════════
⌗ Tags: #web_development #react #hacking #supabase #ethical_hacking
Medium
How I Found a Broken Subscription Logic That Unlocked Paid Courses for Free
Hi, my name is Harsh (aka billubadmosh). I’m a developer who enjoys learning new things.
⤷ Title: The “Vibe Coding” Disaster: How a Simple Bug Exposed 4.75 Million Records on the AI Social Network Moltbook
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 04:18:26 +0000
════════════════════════
⌗ Tags: #Data Leak #AI Agents #cybersecurity #database breach #Moltbook #Moltbot #OpenAI API keys #OpenClaw #Row Level Security (RLS) #Supabase #Vibe Coding #Wiz Research
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 04:18:26 +0000
════════════════════════
⌗ Tags: #Data Leak #AI Agents #cybersecurity #database breach #Moltbook #Moltbot #OpenAI API keys #OpenClaw #Row Level Security (RLS) #Supabase #Vibe Coding #Wiz Research
Daily CyberSecurity
The "Vibe Coding" Disaster: How a Simple Bug Exposed 4.75 Million Records on the AI Social Network Moltbook
Wiz Research exposes a critical flaw in Moltbook, the AI-only social network. 1.5M API tokens and plaintext OpenAI keys leaked due to AI-coded security gaps.
⤷ Title: How I Exposed an AI Company’s Finances
════════════════════════
𐀪 Author: Ashish Bogati
════════════════════════
ⴵ Time: Tue, 12 May 2026 13:30:15 GMT
════════════════════════
⌗ Tags: #responsible_disclosure #threat_research #supabase #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Ashish Bogati
════════════════════════
ⴵ Time: Tue, 12 May 2026 13:30:15 GMT
════════════════════════
⌗ Tags: #responsible_disclosure #threat_research #supabase #cybersecurity #bug_bounty
Medium
How I Exposed an AI Company’s Finances
Disclosure Notice: This vulnerability was responsibly disclosed to the affected company. The issue has been fully remediated (RLS enforced…
⤷ Title: Broken Access Control in a Supabase-Backed Store
════════════════════════
𐀪 Author: Nathan Budhu
════════════════════════
ⴵ Time: Mon, 25 May 2026 20:34:57 GMT
════════════════════════
⌗ Tags: #supabase #penetration_testing #cybersecurity #ai
════════════════════════
𐀪 Author: Nathan Budhu
════════════════════════
ⴵ Time: Mon, 25 May 2026 20:34:57 GMT
════════════════════════
⌗ Tags: #supabase #penetration_testing #cybersecurity #ai
Medium
Broken Access Control in a Supabase-Backed Store
What is Supabase?
⤷ Title: How I Exposed an AI Company’s Finances
════════════════════════
𐀪 Author: Ashish Bogati
════════════════════════
ⴵ Time: Sun, 31 May 2026 00:50:51 GMT
════════════════════════
⌗ Tags: #responsible_disclosure #threat_research #supabase #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Ashish Bogati
════════════════════════
ⴵ Time: Sun, 31 May 2026 00:50:51 GMT
════════════════════════
⌗ Tags: #responsible_disclosure #threat_research #supabase #cybersecurity #bug_bounty
Medium
How I Exposed an AI Company’s Finances
Disclosure Notice: This vulnerability was responsibly disclosed to the affected company. The issue has been fully remediated (RLS enforced…
⤷ Title: The Code Was Fine. The Access Model Was Not.
════════════════════════
𐀪 Author: Shiki65536@TechRoamer
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 09:05:37 GMT
════════════════════════
⌗ Tags: #application_security #postgresql #database_security #backend_development #supabase
════════════════════════
𐀪 Author: Shiki65536@TechRoamer
════════════════════════
ⴵ Time: Sun, 19 Jul 2026 09:05:37 GMT
════════════════════════
⌗ Tags: #application_security #postgresql #database_security #backend_development #supabase
Medium
The Code Was Fine. The Access Model Was Not.
This week, Supabase flagged several backend tables with: RLS Disabled in Public.
⤷ Title: Back From Vacation & Launching Open Beta: Help Us Test NextBlock CMS (and Get a $500/yr Lifetime…
════════════════════════
𐀪 Author: NextBlock CMS
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 19:19:21 GMT
════════════════════════
⌗ Tags: #cms #supabase #bug_bounty #nextjs #bounty_program
════════════════════════
𐀪 Author: NextBlock CMS
════════════════════════
ⴵ Time: Wed, 22 Jul 2026 19:19:21 GMT
════════════════════════
⌗ Tags: #cms #supabase #bug_bounty #nextjs #bounty_program
Medium
Back From Vacation & Launching Open Beta: Help Us Test NextBlock CMS (and Get a $500/yr Lifetime…
We’re opening the doors to our Next.js 16 + Supabase full-stack CMS and giving away lifetime premium licenses to everyone who helps us…
⤷ Title: Supabase Security Checklist for AI-Built Apps
════════════════════════
𐀪 Author: Secvura
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 15:32:30 GMT
════════════════════════
⌗ Tags: #startup #application_security #cybersecurity #supabase #software_development
════════════════════════
𐀪 Author: Secvura
════════════════════════
ⴵ Time: Sat, 25 Jul 2026 15:32:30 GMT
════════════════════════
⌗ Tags: #startup #application_security #cybersecurity #supabase #software_development
Medium
Supabase Security Checklist for AI-Built Apps
Supabase is a good product. It is also, by design, a Postgres database exposed directly to the public internet. Your browser talks to that…