CVE-2026-30791: Rustdesk

High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Use of a Broken or Risky Cryptographic Algorithm vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android, WebClient (Config import, URI scheme handler, CLI --config modules) allows Retrieve Embedded Sensitive Data. This vulnerability is associated with program files flutter/lib/common.Dart, hbb_common/src/config.Rs and program routines parseRustdeskUri(), importConfig(). This issue affects RustDesk Client: through 1.4.5.

Affected products

  • Rustdesk Rustdesk: up to and including 1.4.5

Published 2026-03-05. Last modified 2026-06-17.