A security advisory was created for SFTPPlus version 3.41.1 affecting caching of HTTP files and injection of external content into HTML error messages.

We have released SFTPPlus version 3.41.1 which fixes the following security defects:
An upgrade is recommended for any customer using SFTPPlus as an HTTP/HTTPS server.
You can check the full release notes here.