Количество 6
Количество 6
CVE-2026-59732
Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.74.4, rclone archive extract can write extracted files outside the user-selected destination prefix when extracting a crafted archive containing parent path components such as ../, allowing creation or overwrite of sibling objects in the same bucket or path scope. This issue is fixed in version 1.74.4.
CVE-2026-59732
Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.74.4, rclone archive extract can write extracted files outside the user-selected destination prefix when extracting a crafted archive containing parent path components such as ../, allowing creation or overwrite of sibling objects in the same bucket or path scope. This issue is fixed in version 1.74.4.
CVE-2026-59732
Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.74.4, rclone archive extract can write extracted files outside the user-selected destination prefix when extracting a crafted archive containing parent path components such as ../, allowing creation or overwrite of sibling objects in the same bucket or path scope. This issue is fixed in version 1.74.4.
CVE-2026-59732
Rclone is a command-line program to sync files and directories to and ...
GHSA-4vr5-p2gc-h23p
rclone archive extract allows S3 destination prefix escape via crafted archive paths
openSUSE-SU-2026:21436-1
Security update for rclone
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-59732 Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.74.4, rclone archive extract can write extracted files outside the user-selected destination prefix when extracting a crafted archive containing parent path components such as ../, allowing creation or overwrite of sibling objects in the same bucket or path scope. This issue is fixed in version 1.74.4. | CVSS3: 5 | 0% Низкий | 2 месяца назад | |
CVE-2026-59732 Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.74.4, rclone archive extract can write extracted files outside the user-selected destination prefix when extracting a crafted archive containing parent path components such as ../, allowing creation or overwrite of sibling objects in the same bucket or path scope. This issue is fixed in version 1.74.4. | CVSS3: 5 | 0% Низкий | 2 месяца назад | |
CVE-2026-59732 Rclone is a command-line program to sync files and directories to and from different cloud storage providers. Prior to 1.74.4, rclone archive extract can write extracted files outside the user-selected destination prefix when extracting a crafted archive containing parent path components such as ../, allowing creation or overwrite of sibling objects in the same bucket or path scope. This issue is fixed in version 1.74.4. | CVSS3: 5 | 0% Низкий | 2 месяца назад | |
CVE-2026-59732 Rclone is a command-line program to sync files and directories to and ... | CVSS3: 5 | 0% Низкий | 2 месяца назад | |
GHSA-4vr5-p2gc-h23p rclone archive extract allows S3 destination prefix escape via crafted archive paths | CVSS3: 5 | 0% Низкий | около 2 месяцев назад | |
openSUSE-SU-2026:21436-1 Security update for rclone | 2 месяца назад |
Уязвимостей на страницу