CRITICAL9.1CVE-2026-44542FileBrowser Public Share DELETE API Path Traversal Allows Unauthenticated Arbitrary File Deletion
from 0, < 0.0.0-20260501183844-112740bdd41d
HIGH8.9CVE-2026-30934FileBrowser Quantum: Stored XSS in public share page via unsanitized share metadata (text/template misuse) in github.com/gtsteffaniak/filebrowser
from 0, < 0.0.0-20260307130210-09713b32a5f6
HIGH8.9CVE-2026-30934FileBrowser Quantum: Stored XSS in public share page via unsanitized share metadata (text/template misuse) in github.com/gtsteffaniak/filebrowser
from 0, < 0.0.0-20260307130210-09713b32a5f6
—FileBrowser Quantum: unauthenticated user share share info
from 0, < 1.2.1-stable.0.20260514154726-1802e1281135