Versions in this module
v1
Nov 18, 2020 GO-2022-0964 +4 more
GO-2022-0964: SFTPGo vulnerable to recovery codes abuse in github.com/drakkan/sftpgo
GO-2022-1015: SFTPGo WebClient vulnerable to Cross-site Scripting in github.com/drakkan/sftpgo
GO-2024-2940: SFTPGo has insufficient access control for password reset in github.com/drakkan/sftpgo
GO-2024-3283: SFTPGo allows administrators to restrict command execution from the EventManager in github.com/drakkan/sftpgo
GO-2024-3300: sftpgo vulnerable to brute force takeover of OpenID Connect session cookies in github.com/drakkan/sftpgo
Changes in this version
type UserFilters
Nov 14, 2020 GO-2022-0964 +4 more
GO-2022-0964: SFTPGo vulnerable to recovery codes abuse in github.com/drakkan/sftpgo
GO-2022-1015: SFTPGo WebClient vulnerable to Cross-site Scripting in github.com/drakkan/sftpgo
GO-2024-2940: SFTPGo has insufficient access control for password reset in github.com/drakkan/sftpgo
GO-2024-3283: SFTPGo allows administrators to restrict command execution from the EventManager in github.com/drakkan/sftpgo
GO-2024-3300: sftpgo vulnerable to brute force takeover of OpenID Connect session cookies in github.com/drakkan/sftpgo
Nov 8, 2020 GO-2022-0964 +4 more
GO-2022-0964: SFTPGo vulnerable to recovery codes abuse in github.com/drakkan/sftpgo
GO-2022-1015: SFTPGo WebClient vulnerable to Cross-site Scripting in github.com/drakkan/sftpgo
GO-2024-2940: SFTPGo has insufficient access control for password reset in github.com/drakkan/sftpgo
GO-2024-3283: SFTPGo allows administrators to restrict command execution from the EventManager in github.com/drakkan/sftpgo
GO-2024-3300: sftpgo vulnerable to brute force takeover of OpenID Connect session cookies in github.com/drakkan/sftpgo
Changes in this version
type CachedUser
type Config
type Filesystem
type FilesystemProvider
Oct 17, 2020 GO-2022-0964 +4 more
GO-2022-0964: SFTPGo vulnerable to recovery codes abuse in github.com/drakkan/sftpgo
GO-2022-1015: SFTPGo WebClient vulnerable to Cross-site Scripting in github.com/drakkan/sftpgo
GO-2024-2940: SFTPGo has insufficient access control for password reset in github.com/drakkan/sftpgo
GO-2024-3283: SFTPGo allows administrators to restrict command execution from the EventManager in github.com/drakkan/sftpgo
GO-2024-3300: sftpgo vulnerable to brute force takeover of OpenID Connect session cookies in github.com/drakkan/sftpgo
Oct 10, 2020 GO-2022-0964 +4 more
GO-2022-0964: SFTPGo vulnerable to recovery codes abuse in github.com/drakkan/sftpgo
GO-2022-1015: SFTPGo WebClient vulnerable to Cross-site Scripting in github.com/drakkan/sftpgo
GO-2024-2940: SFTPGo has insufficient access control for password reset in github.com/drakkan/sftpgo
GO-2024-3283: SFTPGo allows administrators to restrict command execution from the EventManager in github.com/drakkan/sftpgo
GO-2024-3300: sftpgo vulnerable to brute force takeover of OpenID Connect session cookies in github.com/drakkan/sftpgo
Changes in this version
type Config
Jul 6, 2020 GO-2022-0964 +4 more
GO-2022-0964: SFTPGo vulnerable to recovery codes abuse in github.com/drakkan/sftpgo
GO-2022-1015: SFTPGo WebClient vulnerable to Cross-site Scripting in github.com/drakkan/sftpgo
GO-2024-2940: SFTPGo has insufficient access control for password reset in github.com/drakkan/sftpgo
GO-2024-3283: SFTPGo allows administrators to restrict command execution from the EventManager in github.com/drakkan/sftpgo
GO-2024-3300: sftpgo vulnerable to brute force takeover of OpenID Connect session cookies in github.com/drakkan/sftpgo