Skip to content

NiceGUI is vulnerable to XSS via Unescaped URL in ui.navigate.history.push() / replace()

Moderate severity GitHub Reviewed Published Jan 8, 2026 in zauberzeug/nicegui • Updated Jan 8, 2026

No open alerts for this advisory

Give feedback on Dependabot alerts