Link following in Rsync - CVE-2026-53783
Published: August 13, 2026
Vulnerability details
The vulnerability allows a remote user to disclose sensitive information and modify files outside the restricted directory.
The vulnerability exists due to improper link resolution before file access and unsafe option allowlisting in the rrsync SSH forced-command wrapper when handling rsync arguments and options in a restricted directory. A remote user can replace a validated path component with a symlink or use dangerous allowed options to disclose sensitive information and modify files outside the restricted directory.
The issue affects restricted non-root directory configurations and does not require user interaction.