在 rclone 1.75.0 之前的版本中,pprof 调试处理器被注册为其自身的路由器路由,从而绕过了主处理器中“失败关闭”(fail-closed)的认证规则。攻击者可以无需认证访问 /debug/pprof/cmdline 端点,从而获取包含后端凭证在内的完整进程命令行参数(argv)。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-79781 | 6.5 MEDIUM | rclone serve s3 Path Traversal via dot-dot object keys |
| CVE-2026-79775 | 6.5 MEDIUM | rclone Archive Backend SquashFS Parser Denial of Service |
| CVE-2026-79780 | 5.3 MEDIUM | rclone before v1.75.0 Credential Exposure via S3 Redirect |
| CVE-2026-79779 | 5.3 MEDIUM | rclone before v1.75.0 WebDAV Credential Exposure via HTTPS-to-HTTP Redirect |
| CVE-2026-79778 | 5.3 MEDIUM | rclone before v1.75.0 Denial of Service via TUS nil-response panic |
| CVE-2026-79783 | 3.6 LOW | rclone before 1.74.4 Privilege Escalation via setuid Metadata |
| CVE-2026-79782 | 3.1 LOW | rclone before 1.74.4 Security Token Disclosure via HTTPS to HTTP Redirect |
| CVE-2026-79777 | 2.7 LOW | rclone before v1.75.0 Information Disclosure via RC API |
No comments yet