| Bug | bookworm | trixie | sid | Description |
|---|
| CVE-2026-88046 | vulnerable | vulnerable | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-88045 | vulnerable | vulnerable | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-88044 | vulnerable | vulnerable | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-88018 | vulnerable | vulnerable | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-88017 | vulnerable | vulnerable | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-88016 | vulnerable | vulnerable | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-88015 | vulnerable | vulnerable | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-88014 | vulnerable | vulnerable | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-88013 | vulnerable | vulnerable | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-79783 | vulnerable | vulnerable (no DSA) | vulnerable | rclone before 1.74.4 fails to mask special permission bits when applyi ... |
| CVE-2026-79782 | vulnerable | vulnerable (no DSA) | vulnerable | rclone before 1.74.4 fails to strip the X-Amz-Security-Token header wh ... |
| CVE-2026-79781 | vulnerable | vulnerable (no DSA) | vulnerable | rclone serve s3 before 1.74.4 contains a path traversal vulnerability ... |
| CVE-2026-79780 | vulnerable | vulnerable (no DSA) | vulnerable | rclone before v1.75.0 fails to sanitize IBM IAM bearer tokens and SSE- ... |
| CVE-2026-79779 | vulnerable | vulnerable (no DSA) | vulnerable | rclone versions before v1.75.0 fail to reject transport downgrades in ... |
| CVE-2026-79778 | vulnerable | vulnerable (no DSA) | vulnerable | rclone before v1.75.0 contains a denial of service vulnerability in th ... |
| CVE-2026-79777 | vulnerable | vulnerable (no DSA) | vulnerable | rclone before v1.75.0 includes full Go stack traces in RC API error re ... |
| CVE-2026-79776 | vulnerable | vulnerable (no DSA) | vulnerable | rclone before 1.75.0 mounts the pprof debug handler as its own router ... |
| CVE-2026-79775 | vulnerable | vulnerable (no DSA) | vulnerable | rclone versions >= v1.72.0 and <= v1.74.4 (fixed in v1.75.0) contain m ... |
| CVE-2026-71313 | vulnerable | vulnerable (no DSA) | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-71312 | vulnerable | vulnerable (no DSA) | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-71311 | vulnerable | vulnerable (no DSA) | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-71310 | vulnerable | vulnerable (no DSA) | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-71309 | vulnerable | vulnerable (no DSA) | vulnerable | rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-59733 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | vulnerable | Rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-59732 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | vulnerable | Rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-54572 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | vulnerable | Rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-49980 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | vulnerable | Rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-41179 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | vulnerable | Rclone is a command-line program to sync files and directories to and ... |
| CVE-2026-41176 | vulnerable (no DSA, postponed) | vulnerable (no DSA) | vulnerable | Rclone is a command-line program to sync files and directories to and ... |
| CVE-2024-52522 | vulnerable (no DSA) | vulnerable (no DSA) | fixed | Rclone is a command-line program to sync files and directories to and ... |