CVE-2026-53555 | dataease SQLBot up to 1.8.x SVG Upload ui cross site scripting
A vulnerability categorized as problematic has been discovered in dataease SQLBot up to 1.8.x. This issue affects some unknown processing of the file /api/v1/system/assistant/ui of the component SVG Upload Handler. The manipulation results in cross site scripting.
This vulnerability was named CVE-2026-53555. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More