← Back to CVE search

CVE-2026-79777

rclone

Description

rclone before v1.75.0 includes full Go stack traces in RC API error responses when panics occur. Attackers can trigger panics to leak internal file paths, module versions, goroutine states, and memory addresses.

CVSS 2.7EPSS 0.23900000000000002%Risk 0.28
View source
Published
2026-08-25 16:17:29
Affected versions
<1.75.0
Type
Library
Last modified
2026-08-25 16:17:29
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N