CVE-2026-85176

DbGate fails to validate jslid parameters in the jsldata controller, allowing authenticated users to read and write arbitrary files via file:// scheme resolution. Attackers can exploit getJslFileName() to bypass directory containment and access sensitive files including encrypted database credentials stored in connections configuration.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-03 15:17

Updated : 2026-09-03 18:17


NVD link : CVE-2026-85176

Mitre link : CVE-2026-85176

CVE.ORG link : CVE-2026-85176


JSON object : View

Products Affected

No product.

CWE
CWE-73

External Control of File Name or Path