[Git][security-tracker-team/security-tracker][master] Add new rclone issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Aug 6 08:44:10 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8622a70c by Salvatore Bonaccorso at 2026-08-06T09:43:54+02:00
Add new rclone issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -13,15 +13,25 @@ CVE-2026-71315 (Nuxt is an open-source web development framework for Vue.js. Fro
 CVE-2026-71314 (Nuxt is an open-source web development framework for Vue.js. From 3.1. ...)
 	NOT-FOR-US: Nuxt
 CVE-2026-71313 (rclone is a command-line program to sync files and directories to and  ...)
-	TODO: check
+	- rclone <unfixed>
+	NOTE: https://github.com/rclone/rclone/security/advisories/GHSA-7p4m-qxvv-g567
+	NOTE: Fixed by: https://github.com/rclone/rclone/commit/6a69713864b1d8f6edbc03d8af735f9624576d6e (v1.75.0)
 CVE-2026-71312 (rclone is a command-line program to sync files and directories to and  ...)
-	TODO: check
+	- rclone <unfixed>
+	NOTE: https://github.com/rclone/rclone/security/advisories/GHSA-2m8m-jhrm-w6j2
+	NOTE: Fixed by: https://github.com/rclone/rclone/commit/e122fba1a57641b63a580aa26c026903a84e2e88 (v1.75.0)
 CVE-2026-71311 (rclone is a command-line program to sync files and directories to and  ...)
-	TODO: check
+	- rclone <unfixed>
+	NOTE: https://github.com/rclone/rclone/security/advisories/GHSA-8c48-q9wj-3w37
+	NOTE: Fixed by: https://github.com/rclone/rclone/commit/1df2b70753286c1dfe8366078cbedfdf7f96472c (v1.75.0)
 CVE-2026-71310 (rclone is a command-line program to sync files and directories to and  ...)
-	TODO: check
+	- rclone <unfixed>
+	NOTE: https://github.com/rclone/rclone/security/advisories/GHSA-xhf4-832v-7xcr
+	NOTE: Fixed by: https://github.com/rclone/rclone/commit/21d8cd3b92cd81d987f485051d454ea675d91a2b (v1.75.0)
 CVE-2026-71309 (rclone is a command-line program to sync files and directories to and  ...)
-	TODO: check
+	- rclone <unfixed>
+	NOTE: https://github.com/rclone/rclone/security/advisories/GHSA-45pq-889g-fcgh
+	NOTE: Fixed by: https://github.com/rclone/rclone/commit/cc5a189f00efe68ed0ddb32d3237b42549a9f264 (v1.75.0)
 CVE-2026-70618 (Spacebar Server before commit 51da17c contains a missing authorization ...)
 	TODO: check
 CVE-2026-70617 (Spacebar Server before commit dcfd910 contains a missing authorization ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8622a70c4bf57ab2aa7571b5ed55cbb5047872fb

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8622a70c4bf57ab2aa7571b5ed55cbb5047872fb
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260806/90b99cd8/attachment.htm>


More information about the debian-security-tracker-commits mailing list