Home RustDesk CVE-2026-30791
Back to RustDesk

CVE-2026-30791

RustDesk Client

RustDesk CVSS 7.5 Updated March 20, 2026

Executive Risk Summary

"A Use of a Broken or Risky Cryptographic Algorithm vulnerability in RustDesk Client allows an attacker to retrieve embedded sensitive data. This vulnerability affects RustDesk Client versions through 1.4.5 and can be exploited on various platforms including Windows, MacOS, Linux, iOS, Android, and WebClient."

Operational Audit Arsenal

Target Type Program Files
Target Asset flutter/lib/common.dart, hbb_common/src/config.rs
Standard Path /usr/local/lib/rustdesk-client (Linux), %localappdata%\RustDesk\Client (Windows), /Applications/RustDesk Client.app/Contents/Resources (MacOS)

Manual Verification Required

This is a non-Windows asset (RustDesk). Use the target asset details and official path provided above to verify your current version against the official vendor advisories listed below.

Patch Impact Forecast

Reboot Required Unlikely

Low to Moderate

Internal Work Notes

RustDesk Client vulnerability (CVE-2026-30791) - update to version 1.4.6 or later to mitigate risk of sensitive data retrieval

Technical Intelligence & Operational Utilities • Delivered Weekly

Intelligence Sources

Related RustDesk Threats

Data compiled from NVD, MSRC, and CISA KEV Catalog. Intelligence synthesized via AI. Scripts provided for diagnostic purposes under MIT License.