{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/dbgate--7.3.1/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:dbgate:dbgate:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.3,"id":"CVE-2026-101066"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["dbgate (\u003c= 7.3.1)","Dbgate (up to 6.8.1, 7.0.2, 7.1.8, 7.2.5, 7.3.1)"],"_cs_severities":["high"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["dbgate"],"content_html":"\u003cp\u003eDbgate versions up to 7.3.1 are vulnerable to a path traversal vulnerability identified as CVE-2026-101066. The issue exists within the createLink function located in packages/api/src/controllers/archive.js. An attacker can manipulate the linkedFolder argument to break out of the intended directory structure and access sensitive files on the host server. This vulnerability is remotely exploitable without authentication and is currently subject to public disclosure with no available vendor patch. Given the nature of Dbgate as a database management tool, successful exploitation could lead to the exposure of database configuration files, credentials, and other sensitive system information stored on the host running the application.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows remote attackers to read unauthorized files from the filesystem where Dbgate is installed. This can lead to full system compromise if configuration files containing database credentials are exfiltrated. The vulnerability affects all deployments of Dbgate versions 7.3.1 and earlier, regardless of the underlying operating system.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritized actions for security teams:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eIdentify all instances of Dbgate deployed within the environment and audit their exposure to the internet.\u003c/li\u003e\n\u003cli\u003eApply network-level access control lists (ACLs) to restrict access to Dbgate interfaces to trusted management subnets until a patch is released.\u003c/li\u003e\n\u003cli\u003eMonitor web server access logs for requests containing directory traversal patterns such as \u0026quot;../\u0026quot; in the linkedFolder parameter targeting the archive controller.\u003c/li\u003e\n\u003cli\u003eImplement file integrity monitoring (FIM) on critical application configuration files to detect unauthorized access attempts.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-28T14:15:00Z","date_published":"2026-09-28T14:14:49Z","id":"https://feed.craftedsignal.io/briefs/2026-09-dbgate-path-traversal/","summary":"Dbgate versions up to 7.3.1 contain a path traversal vulnerability in the archive link creation component, allowing remote unauthenticated attackers to access arbitrary files on the filesystem via the linkedFolder parameter.","title":"CVE-2026-101066 Path Traversal in Dbgate","url":"https://feed.craftedsignal.io/briefs/2026-09-dbgate-path-traversal/"}],"language":"en","title":"CraftedSignal Threat Feed - Dbgate (\u003c= 7.3.1)","version":"https://jsonfeed.org/version/1.1"}