LOWVulnerability
CVE-2026-79777
rclone before v1.75.0 includes full Go stack traces in RC API error responses when panics occur. Attackers can trigger panics to leak internal file paths, module versions, goroutine states, and memory addresses.
Properties
- severity
- LOW
- score
- 2.7
- epss_score
- 0.00239
- cve_id
- CVE-2026-79777
- signal_observed_at
- 2026-09-15T21:12:47+00:00
- vector
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
- published_at
- 2026-08-25T16:17:29.520
- last_modified
- 2026-09-10T20:46:19.780
- epss_percentile
- 0.15061
Related Entities (3)
ENRICHED_BY (1)
→[Source]FIRST EPSS
DESCRIBED_BY (1)
→[Source]NVD
HAS_WEAKNESS (1)
→[Weakness]Generation of Error Message Containing Sensitive Information
Explore deeper with Ninja Signal's threat intelligence graph