CVE-2026-79780 | Rclone up to 1.74.x S3 Redirect Callbacks cross-domain policy

SecurityVulns

A vulnerability was found in Rclone up to 1.74.x. It has been rated as problematic. This vulnerability affects unknown code of the component S3 Redirect Callbacks. This manipulation causes permissive cross-domain policy with untrusted domains.

This vulnerability is handled as CVE-2026-79780. The attack can be initiated remotely. There is not any exploit available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More