PulsePatch.io @pulsepatchio NiceGUI apps using `ui.sub_pages` are vulnerable to a zero-click Cross-Site Scripting (XSS) via GHSA-mhpg-c27v-6mxr. Review your #NiceGUI deployments for this #XSS issue. pulsepatch.io/posts/nicegui-… 2:30 PM · Jan 10, 2026 · 136 Views 136