CVE-2026-40884 | patrickhener goshs up to 2.0.0-beta.5 SFTP Service missing authentication (GHSA-c29w-qq4m-2gcv)
A vulnerability was found in patrickhener goshs up to 2.0.0-beta.5 and classified as critical. Impacted is an unknown function of the component SFTP Service. The manipulation results in missing authentication.
This vulnerability is reported as CVE-2026-40884. The attack can be launched remotely. No exploit exists.
It is suggested to upgrade the affected component.