CVE-2026-79777
LOW2.7CVSS v3
—CVSS v2
0.24%
EPSS (exploit probability)
CWE-209CWE
Description
rclone before v1.75.0 includes full Go stack traces in RC API error responses when panics occur. Attackers can trigger panics to leak internal file paths, module versions, goroutine states, and memory addresses.
CVSS v3 vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Affected routers (0)
No routers currently mapped to this CVE in our database.