Researchers have identified more than 16,000 Supabase databases that are misconfigured, leaving tables publicly readable. The exposed data includes personally identifiable information, passwords, and authentication tokens, according to the report.

The scale of the exposure suggests that misconfiguration is not an isolated problem. Developers using managed database services need to verify that access controls are set correctly before deploying applications.

This article is based on a single source, so there is no independent confirmation or conflicting information to compare. The findings underline the importance of auditing database permissions regularly.