CVE-2026-30783: Rustdesk

Critical severity, CVSS 9.8. EPSS: 0.5% chance of exploitation in the next 30 days.

A vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android, WebClient (Client signaling, API sync loop, config management modules) allows Privilege Abuse. This vulnerability is associated with program files src/rendezvous_mediator.Rs, src/hbbs_http/sync.Rs and program routines API sync loop, api-server config handling. This issue affects RustDesk Client: through 1.4.8.

Affected products

  • Rustdesk Rustdesk: up to and including 1.4.5

Published 2026-03-05. Last modified 2026-06-22.