CVE-2026-47669 | DbGate up to 7.1.8 ZIP unzipDirectory.js unzipDirectory path traversal
A vulnerability described as very critical has been identified in DbGate up to 7.1.8. This affects the function unzipDirectory of the file packages/api/src/shell/unzipDirectory.js of the component ZIP Handler. Executing a manipulation can lead to path traversal.
This vulnerability is handled as CVE-2026-47669. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More