Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-79776

Опубликовано: 25 авг. 2026
Источник: redhat
CVSS3: 7.5

Описание

rclone before 1.75.0 mounts the pprof debug handler as its own router route, bypassing the fail-closed authentication rule in the main handler. Attackers can access the /debug/pprof/cmdline endpoint unauthenticated to retrieve the full process argv including backend credentials.

A flaw was found in rclone. A remote attacker can bypass the authentication mechanism by accessing the /debug/pprof/cmdline endpoint. This vulnerability occurs because the pprof debug handler is mounted as its own router route, bypassing the main handler's authentication rule. Successful exploitation allows an unauthenticated attacker to retrieve sensitive backend credentials, leading to information disclosure.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Cryostat 4cryostat/cryostat-storage-rhel9Not affected
Red Hat Advanced Cluster Management for Kubernetes 2rhacm2/volsync-rhel9Affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-305
https://bugzilla.redhat.com/show_bug.cgi?id=2523573github.com/rclone/rclone: rclone: Authentication bypass leads to backend credential disclosure

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
23 дня назад

rclone before 1.75.0 mounts the pprof debug handler as its own router route, bypassing the fail-closed authentication rule in the main handler. Attackers can access the /debug/pprof/cmdline endpoint unauthenticated to retrieve the full process argv including backend credentials.

CVSS3: 5.3
nvd
23 дня назад

rclone before 1.75.0 mounts the pprof debug handler as its own router route, bypassing the fail-closed authentication rule in the main handler. Attackers can access the /debug/pprof/cmdline endpoint unauthenticated to retrieve the full process argv including backend credentials.

CVSS3: 5.3
debian
23 дня назад

rclone before 1.75.0 mounts the pprof debug handler as its own router ...

CVSS3: 5.3
github
23 дня назад

rclone before 1.75.0 mounts the pprof debug handler as its own router route, bypassing the fail-closed authentication rule in the main handler. Attackers can access the /debug/pprof/cmdline endpoint unauthenticated to retrieve the full process argv including backend credentials.

7.5 High

CVSS3