CVE@CVEnewPatch
The CVE-2026-28683 vulnerability in Gokapi permits malicious authenticated users to exploit SVG uploads, and this issue is fixed in version 2.2.3.
CRAC Learning - Tech@cracbotGeneral
The post simply references CVE‑2026‑28683 with its CVSS score and affected version, providing no PoC, exploit, or mitigation details, making it a generic mention.
Infoflowcloud@infoflowcloudDisclosure
The post announces CVE‑2026‑28683, noting the affected version and context of the vulnerability, without providing PoC or exploit details.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
The post announces a stored cross‑site scripting flaw in Gokapi File Sharing Server versions older than 2.2.3, linking to vulnerability details without providing proof of exploitation.
The Hacker Wire@TheHackerWireDisclosure
The tweet announces CVE-2026-28683 in Gokapi, noting that a malicious authenticated user can exploit an SVG upload and hotlink issue in versions prior to 2.2.3.
CVEFind.com@CveFindComPatch
The post alerts users that Gokapi version 2.2.3 addresses a stored XSS flaw caused by SVG file uploads and encourages an update to mitigate the risk.