github.com/filebrowser/filebrowser vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2026-54093Mediumgithub.com/filebrowser/filebrowser/v2: File Browser: FilePath traversal in download-as-zip/tar via Windows-style backslash separators in stored filenamesCVE-2026-54094Mediumgithub.com/filebrowser/filebrowser/v2: File Browser: Symlink following lets scoped users read, overwrite, and share files outside their filebrowser scopeCVE-2026-54092Highgithub.com/filebrowser/filebrowser/v2: File Browser has a DoS Vulnerability via Public Login APICVE-2026-54096Highgithub.com/filebrowser/filebrowser/v2: File Browser: Improper Access Control Occurs via Pre-Created Public Share for a Non-existent PathCVE-2026-54097Highgithub.com/filebrowser/filebrowser: File Browser: Cross-user unauthorized share-link deletion via unbounded prefix match in DeleteWithPathPrefixCVE-2026-23849Mediumgithub.com/filebrowser/filebrowser: File Browser Vulnerable to Username Enumeration via Timing Attack in /api/loginCVE-2025-53826Highgithub.com/filebrowser/filebrowser: File Browser’s insecure JWT handling can lead to session replay attacks after logoutCVE-2025-52997Mediumgithub.com/filebrowser/filebrowser/v2: File Browser vulnerable to insecure password handlingCVE-2025-52996Lowgithub.com/filebrowser/filebrowser: File Browser's password protection of links is bypassableCVE-2025-52995Highgithub.com/filebrowser/filebrowser/v2: File Browser vulnerable to command execution allowlist bypassCVE-2025-52901Mediumgithub.com/filebrowser/filebrowser/v2: File Browser allows sensitive data to be transferred in URLCVE-2025-52902Highgithub.com/filebrowser/filebrowser/v2: filebrowser allows Stored Cross-Site Scripting through the Markdown preview functionCVE-2025-52900Mediumgithub.com/filebrowser/filebrowser/v2: filebrowser Sets Insecure File Permissions

Stop the waste.
Protect your environment with Kodem.