Executive brief
FileBrowser: Missing Rate Limiting on Authentication Endpoint Enables Brute Force Attacks
Affected products
- Go github.com/gtsteffaniak/filebrowser
Junglewise Threat Intelligence
Severity: low · CVSS 3.1 · Published 2026-06-25
Technologies: github.com/gtsteffaniak/filebrowser (Go). Vendors: Go.
FileBrowser: Missing Rate Limiting on Authentication Endpoint Enables Brute Force Attacks