[NEU] [hoch] rclone: Mehrere Schwachstellen
Ein Angreifer kann mehrere Schwachstellen in rclone ausnutzen, um Dateien zu manipulieren, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Sicherheitsvorkehrungen zu umgehen, und um beliebigen Programmcode auszuführen.
Details
Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2623
Recent advisories for rclone
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- high[NEW] [high] rclone: Multiple vulnerabilitiescert-bund · 2026-07-15
- highCVE-2026-59733: Rclone is a command-line program to sync files and directories to and from different cloud sto…nvd · 2026-07-14
- mediumCVE-2026-59732: Rclone is a command-line program to sync files and directories to and from different cloud sto…nvd · 2026-07-14
- highCVE-2026-54572: Rclone is a command-line program to sync files and directories to and from different cloud sto…nvd · 2026-07-14
- criticalGHSA-qw24-gh76-8rvv: Rclone: Unauthenticated command execution in `rclone rcd --rc-serve` via inline remote in…ghsa · 2026-06-16
More from CERT-Bund (BSI) Security Advisories
- high[NEU] [hoch] Bouncy Castle: Mehrere Schwachstellen2026-08-03
- medium[NEU] [mittel] N-able N-Central: Mehrere Schwachstellen ermöglichen Umgehen von Sicherheitsvorkehrungen2026-08-03
- high[NEU] [hoch] IBM App Connect Enterprise: Mehrere Schwachstellen2026-08-03
- high[NEU] [hoch] Wazuh: Mehrere Schwachstellen2026-08-03
- high[NEU] [hoch] IBM Langflow Desktop: Mehrere Schwachstellen2026-08-03