VDB

GO-2026-4344

GO-2026-4344 PUBLISHED

File Browser Vulnerable to Username Enumeration via Timing Attack in /api/login in github.com/filebrowser/filebrowser

Affected Products

VendorProductVersions
github.comfilebrowser/filebrowser0, 0
github.comfilebrowser/filebrowser/v20, 0

Timeline

  • Feb 3, 2026 CVE Published
  • Feb 4, 2026 CVE Updated
  • May 1, 2026 Security Advisory
Open in Interactive Console →
$ Console Community · 100/wk Open console ›