github drakkan/sftpgo v2.6.4

11 hours ago

Bug Fixes

  • OIDC session cookie: use a cryptographically secure opaque random string, as we already do in all other security-sensitive code in SFTPGo. CVE-2024-52801. Thanks to @denisvr72 for reporting.
  • EventManager: fix connection leak when performing file operations on a third-party SFTP server, for example, to copy a file to another SFTP server after an upload.

CI

Don't miss a new sftpgo release

NewReleases is sending notifications on new releases.