HIGH8.2npm
GHSA-35xm-qvjg-8m42· CVE-2026-34725dbgate-web: Stored XSS in applicationIcon leads to potential RCE in Electron due to unsafe renderer configuration
Modified: 4/6/2026
package
pkg:npm/dbgate-web
dbgate-web: Stored XSS in applicationIcon leads to potential RCE in Electron due to unsafe renderer configuration
Modified: 4/6/2026
DbGate has cross site scripting via the SVG Icon String Handler component
Modified: 4/14/2026