CVE-2026-40188 - goshs is Missing Write Protection for Parametric Data Values
CVE ID :CVE-2026-40188
Published : April 10, 2026, 8:16 p.m. | 3 hours, 52 minutes ago
Description :goshs is a SimpleHTTPServer written in Go. From 1.0.7 to before 2.0.0-beta.4, the SFTP com...
Related Vulnerabilities
- CVE-2026-40023: Apache Log4cxx's XMLLayout https://logging.apache.org/log4cxx/1.7.0/classlog4cxx_1_1xml_1_1XMLLayou MEDIUM
- CVE-2026-40198: Net::CIDR::Lite versions before 0.23 for Perl does not validate IPv6 group count, which may allow IP MEDIUM
- CVE-2026-5809: The wpForo Forum plugin for WordPress is vulnerable to Arbitrary File Deletion in versions up to and HIGH
- CVE-2026-35598: Vikunja Missing Authorization on CalDAV Task Read MEDIUM
- CVE-2026-4351: The Perfmatters plugin for WordPress is vulnerable to arbitrary file overwrite via path traversal in HIGH
Related Coverage
Threat Actors