Affected by GO-2025-3736
and 9 other vulnerabilities
GO-2025-3736: Gokapi has stored XSS vulnerability in friendly name for API keys in github.com/forceu/gokapi
GO-2025-3737: Gokapi vulnerable to stored XSS via uploading file with malicious file name in github.com/forceu/gokapi
GO-2026-4612: Gokapi has Stored XSS in SVG Hotlinks in github.com/forceu/gokapi
GO-2026-4613: Gokapi has Data Leak in Upload Status Stream in github.com/forceu/gokapi
GO-2026-4615: Gokapi has privilege escalation with auth token in github.com/forceu/gokapi
GO-2026-4624: Gokapi has CSRF in Login Endpoint in github.com/forceu/gokapi
GO-2026-4626: Gokapi has privilege escalation via incomplete API-key permission revocation on user rank demotion in github.com/forceu/gokapi
GO-2026-4695: Gokapi's File Request MaxSize Limit Bypassed via Multi-Chunk Upload in github.com/forceu/gokapi
GO-2026-4696: Gokapi vulnerable to Privilege Escalation in File Replace in github.com/forceu/gokapi
GO-2026-4698: Gokapi vulnerable to DoS in E2E Metadata Parser in github.com/forceu/gokapi
package
Version:
v1.9.6
Opens a new window with list of versions in this module.
Published: Dec 18, 2024
License: AGPL-3.0
Opens a new window with license information.
Imports: 6
Opens a new window with list of imports.
Imported by: 0
Opens a new window with list of known importers.
Documentation
¶
InstallService installs Gokapi as a systemd service
UninstallService uninstalls Gokapi as a systemd service
Source Files
¶
Click to show internal directories.
Click to hide internal directories.