CVE-2026-71309 | Rclone up to 1.74.x Restic Serve restic.go WithRemote path traversal
A vulnerability was found in Rclone up to 1.74.x. It has been rated as critical. Affected is the function WithRemote of the file cmd/serve/restic/restic.go of the component Restic Serve. This manipulation causes path traversal.
This vulnerability is tracked as CVE-2026-71309. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.VulDB Recent EntriesRead More