PatchSiren cyber security CVE debrief
CVE-2026-30794 rustdesk-client CVE debrief
CVE-2026-30794 is a CRITICAL Improper Certificate Validation vulnerability in RustDesk Client on Windows, MacOS, Linux, iOS, Android. The vulnerability allows for Adversary in the Middle (AiTM) attacks. It affects RustDesk Client through version 1.4.8, specifically in the HTTP API client and TLS transport modules. The CVSS score is 9.1, indicating a high severity. Defenders should prioritize patching due to the potential for significant impact and the critical severity of this vulnerability.
- Vendor
- rustdesk-client
- Product
- Unknown
- CVSS
- CRITICAL 9.1
- CISA KEV
- Not listed in stored evidence
- Original CVE published
- 2026-03-05
- Original CVE updated
- 2026-06-22
- Advisory published
- 2026-03-05
- Advisory updated
- 2026-06-22
Who should care
Organizations using RustDesk Client, especially those in environments where secure communication is paramount, should prioritize patching this vulnerability. This includes but is not limited to remote work setups, organizations with sensitive data, and those in industries with strict security compliance requirements.
Technical summary
The vulnerability is caused by improper certificate validation in the RustDesk Client, specifically in the src/hbbs_http/http_client.Rs file and the TLS retry mechanism with danger_accept_invalid_certs(true). This allows attackers to intercept and manipulate communications, potentially leading to unauthorized access or data breaches. The vulnerability affects RustDesk Client versions through 1.4.8 on multiple platforms including Windows, MacOS, Linux, iOS, and Android.
Defensive priority
High priority due to CRITICAL CVSS score of 9.1 and potential for AiTM attacks.
Recommended defensive actions
- Inventory and update RustDesk Client to a version beyond 1.4.8.
- Review and enforce secure certificate validation practices for TLS communications.
- Implement compensating controls such as network monitoring for suspicious activity.
- Limit exposure by restricting access to sensitive data and systems.
- Monitor for and apply any additional security patches or advisories from the vendor.
Evidence notes
The primary evidence for this vulnerability comes from the CVE record and NVD detail pages. The vulnerability affects RustDesk Client through version 1.4.8. Defenders should verify the version of RustDesk Client in use and check for any official advisories or patches from the vendor. The CVE and NVD entries provide critical details about the vulnerability's impact and affected configurations.
Official resources
-
CVE-2026-30794 CVE record
CVE.org
-
CVE-2026-30794 NVD detail
NVD
-
Source item URL
nvd_modified
-
Mitigation or vendor reference
2fdefc65-d750-4b8d-96ee-6e2c0c42dbfe - Exploit, Third Party Advisory
-
Source reference
2fdefc65-d750-4b8d-96ee-6e2c0c42dbfe - Product
-
Source reference
2fdefc65-d750-4b8d-96ee-6e2c0c42dbfe - Not Applicable
This article is AI-assisted and based on the supplied source corpus.