
NewNormal Security turns the last 24 hours of CVEs into new detections, every day. 𝗗𝗮𝗶𝗹𝘆 𝗖𝗩𝗘 𝗥𝗲𝗽𝗼𝗿𝘁 — 26 Aug 2026 𝗔𝗹𝗿𝗲𝗮𝗱𝘆 𝗰𝗼𝘃𝗲𝗿𝗲𝗱 by NewScan: 🖥️ Exposed Go pprof debug endpoints — unauthenticated profiles can expose process memory, as seen in rclone CVE-2026-79776 𝗔𝗱𝗱𝗲𝗱 to NewScan today: 📦 Outdated rclone builds — version-gated checks for redirect credential leaks, path traversal, stack traces and WebDAV DoS, as seen in rclone CVE-2026-79782, CVE-2026-79781, CVE-2026-79780, CVE-2026-79779, CVE-2026-79778, CVE-2026-79777 Test your stack with NewScan — free, self-hosted: https://newnormalsecurity.com/newscan?utm_source=x&utm_medium=social&utm_campaign=daily-cve #infosec #AppSec #CredentialExposure #CSO #REDTEAM
Post summary
The post highlights several new CVEs affecting rclone’s debug endpoints and older builds, detailing potential exposures such as credential leaks and path traversal, without mentioning exploits or mitigations.

