A vulnerability classified as problematic was found in goshs-labs goshs up to 2.1.4. This affects the function
sendFile of the file httpserver/handler.go of the component SendFile Handler. Executing a manipulation can lead to improper authorization.
The identification of this vulnerability is CVE-2026-66064. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.