VDB
GO-2026-4697
GO-2026-4697
PUBLISHED
SFTPGo improperly sanitizes placeholders in group home directories/key prefixes in github.com/drakkan/sftpgo
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| github.com | drakkan/sftpgo/v2 | 2.3.0, 2.3.0 |
| github.com | drakkan/sftpgo | 0, 0 |
Timeline
- Mar 16, 2026 CVE Published
- Mar 23, 2026 CVE Updated