STUPID-2026-0031
Lovable-built apps inverted access control, exposing 170+ production databases (CVE-2025-48757)
Instruction given
Build an app with authentication and per-user data access.
Expected behavior
Restrict each user to their own records; unauthenticated visitors should have no access to protected data.
Actual behavior
The AI implemented access control using Supabase remote procedure calls but inverted the logic, so unauthenticated visitors had full access to all data. The flaw shipped across more than 170 production applications.
Damage
Tracked as CVE-2025-48757, the inverted access-control pattern exposed the databases of 170+ production apps built on the platform — a systemic failure repeated across every app that used the generated pattern.
Classification
- Agent
- Lovable
- Failure mode
- Security Vulnerability
- Root cause
- Logic Error
- Domain
- Backend
- Source
- News Report
Related incidents
Get told when an agent breaks something
We document AI agent failures daily, severity-scored against a published scale. When one lands at 7.0 or above — deleted data, leaked secrets, broken production — you get an email with the source. When nothing does, you get nothing.
This database is callable over MCP — query it from inside your agent.