9.0.2

    Database Client

    Database Management for MariaDB/SQLite, supports executing SQL.

    Rank#-2783
    Publisher cweijanRegistry openvsx504,542Last scanned Sep 14, 2026, 06:44 AMRegistryHomepageGitHub
    Created
    7 years ago
    Last commit
    4 months ago
    Latest release
    4.7.05 years ago

    Security Findings

    23

    Package registry name mismatch

    SuspiciousLineage

    npm name 'vscode-mysql-client2' != repo 'vscode-database-client'

    Dynamic exec of remote content (VSX)

    SuspiciousScanner

    Fetched content reaches a dynamic exec sink in out/extension.js: axios

    out/extension.js

    Hardcoded secrets/API keys8×

    SuspiciousScanner

    Secret Keyword: dbcli...****

    Secret Keyword: passw...****

    Secret Keyword: new_p...****

    Private Key: BEGIN...****

    Private Key: PuTTY...****

    Secret Keyword: strin...****

    Secret Keyword: ****

    Secret Keyword: funct...****

    out/extension.js

    Hardcoded secrets/API keys2×

    SuspiciousScanner

    Secret Keyword: passw...****

    Secret Keyword: new_p...****

    out/webview/assets/getDialect-Cb7AiqG5.js

    Hardcoded secrets/API keys

    SuspiciousScanner

    Secret Keyword: API K...****

    out/webview/assets/notify-DTNH_1b0.js

    Hardcoded secrets/API keys

    SuspiciousScanner

    Secret Keyword: Actua...****

    package.nls.es.json

    Hardcoded secrets/API keys

    SuspiciousScanner

    Secret Keyword: Mettr...****

    package.nls.fr.json

    Hardcoded secrets/API keys

    SuspiciousScanner

    Secret Keyword: Atual...****

    package.nls.pt-br.json

    Hardcoded secrets/API keys3×

    SuspiciousScanner

    Secret Keyword: ER_PA...****

    Secret Keyword: ER_MU...****

    Secret Keyword: mysql...****

    out/node_modules/mariadb.js

    Hardcoded secrets/API keys2×

    SuspiciousScanner

    Private Key: BEGIN...****

    Secret Keyword: strin...****

    out/node_modules/mongodb.js

    Hardcoded secrets/API keys

    SuspiciousScanner

    Secret Keyword: strin...****

    out/node_modules/tedious.js

    Sensitive file access

    SuspiciousScanner

    Access to sensitive file: /etc/passwd