10 Total advisories
10 Vulnerabilities
0 Malware
Dependency scanning
Check whether github.com/gtsteffaniak/filebrowser/backend is in your codebase
Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.
Vulnerabilities
UNKNOWN
CVE-2026-54685
FileBrowser Quantum has Username Enumeration via Authentication Timing Side-Channel in github.com/gtsteffaniak/filebrowser/backend
MEDIUM 5.3
CVE-2026-54685
FileBrowser Quantum has Username Enumeration via Authentication Timing Side-Channel
UNKNOWN
CVE-2026-48777
FileBrowser Quantum: Path traversal in public share PATCH allows file ops outside shared directory
UNKNOWN
CVE-2026-48777
FileBrowser Quantum: Path traversal in public share PATCH allows file ops outside shared directory in github.com/gtsteffaniak/filebrowser/backend
UNKNOWN
CVE-2026-46410
FileBrowser Quantum: unauthenticated user share share info
UNKNOWN
CVE-2026-46410
FileBrowser Quantum: unauthenticated user share share info in github.com/gtsteffaniak/filebrowser
HIGH 7.5
CVE-2026-30933
FileBrowser Quantum: Password-Protected Share Bypass via /public/api/share/info
MEDIUM 6.5
CVE-2026-27611
FileBrowser Quantum: Password Protection Not Enforced on Shared File Links
UNKNOWN
CVE-2026-30933
FileBrowser Quantum: Password-Protected Share Bypass via /public/api/share/info in github.com/gtsteffaniak/filebrowser/backend
UNKNOWN
CVE-2026-27611
FileBrowser Quantum: Password Protection Not Enforced on Shared File Links in github.com/gtsteffaniak/filebrowser/backend
Browse more Go advisories
Learn What is SAST?
Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →
Ready to move
Start Securing
Free, no credit card | First findings in minutes