Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
8.7

RustDesk Client Leaks Sensitive Data Due to Weak Encryption

CVE-2026-30791
Summary

The RustDesk Client has a security issue that allows an attacker to access sensitive data. This affects RustDesk Client versions up to 1.4.5 on multiple platforms. Users should update to the latest version to fix the issue.

Original title
Use of a Broken or Risky Cryptographic Algorithm vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android, WebClient (Config import, URI scheme handle...
Original description
Use of a Broken or Risky Cryptographic Algorithm vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android, WebClient (Config import, URI scheme handler, CLI --config modules) allows Retrieve Embedded Sensitive Data. This vulnerability is associated with program files flutter/lib/common.Dart, hbb_common/src/config.Rs and program routines parseRustdeskUri(), importConfig().

This issue affects RustDesk Client: through 1.4.5.
nvd CVSS4.0 8.7
Vulnerability type
CWE-327 Use of a Broken Cryptographic Algorithm
CWE-684
Published: 5 Mar 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026