Reflected XSS Vulnerability in Netron Desktop Application by Lutz Roeder
CVE-2026-79719
6.8MEDIUM
What is CVE-2026-79719?
The Netron desktop application has a reflected XSS vulnerability due to the handling of unsanitized node names in versions up to 9.1.2. This flaw enables attackers to exploit the application, allowing them to hide specific nodes, conduct port scanning, or potentially leverage a Chrome-related n-day vulnerability to execute arbitrary code remotely. Mitigation measures should be prioritized to protect against these security risks.
Affected Version(s)
Netron * <= 9.1.2
