Junglewise Threat Intelligence

CVE-2025-66645: PYSEC-2026-1700 - NiceGUI has a path traversal in app.add_media_files() allows arbitrary file read

CVE-2025-66645 · Severity: low · CVSS 3.1 · Published 2026-07-07

Technologies: nicegui (PyPI). Vendors: PyPI.

Executive brief

NiceGUI has a path traversal in app.add_media_files() allows arbitrary file read

Affected products

  • PyPI nicegui

Related threats