Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7fxp-9qgr-6fxw

Опубликовано: 25 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 5.1
CVSS3: 2.7

Описание

rclone before v1.75.0 includes full Go stack traces in RC API error responses when panics occur. Attackers can trigger panics to leak internal file paths, module versions, goroutine states, and memory addresses.

rclone before v1.75.0 includes full Go stack traces in RC API error responses when panics occur. Attackers can trigger panics to leak internal file paths, module versions, goroutine states, and memory addresses.

EPSS

Процентиль: 15%
0.00239
Низкий

5.1 Medium

CVSS4

2.7 Low

CVSS3

Дефекты

CWE-209

Связанные уязвимости

CVSS3: 2.7
ubuntu
23 дня назад

rclone before v1.75.0 includes full Go stack traces in RC API error responses when panics occur. Attackers can trigger panics to leak internal file paths, module versions, goroutine states, and memory addresses.

CVSS3: 2.7
redhat
23 дня назад

rclone before v1.75.0 includes full Go stack traces in RC API error responses when panics occur. Attackers can trigger panics to leak internal file paths, module versions, goroutine states, and memory addresses.

CVSS3: 2.7
nvd
23 дня назад

rclone before v1.75.0 includes full Go stack traces in RC API error responses when panics occur. Attackers can trigger panics to leak internal file paths, module versions, goroutine states, and memory addresses.

CVSS3: 2.7
debian
23 дня назад

rclone before v1.75.0 includes full Go stack traces in RC API error re ...

EPSS

Процентиль: 15%
0.00239
Низкий

5.1 Medium

CVSS4

2.7 Low

CVSS3

Дефекты

CWE-209