Home/Product/rustfs
Product

rustfs

12 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2026-40937
all versions
RustFS is a distributed object storage system built in Rust. Prior to 1.0.0-alpha.94, all four notification target admin API endpo
8.3HIGH
CVE-2026-39360
all versions
RustFS is a distributed object storage system built in Rust. Prior to alpha.90, RustFS contains a missing authorization check in t
4.3MEDIUM
CVE-2026-27822
all versions
RustFS is a distributed object storage system built in Rust. Prior to version 1.0.0-alpha.83, a Stored Cross-Site Scripting (XSS)
9.0CRITICAL
CVE-2026-27607
all versions
RustFS is a distributed object storage system built in Rust. In versions 1.0.0-alpha.56 through 1.0.0-alpha.82, RustFS does not va
8.1HIGH
CVE-2026-24762
all versions
RustFS is a distributed object storage system built in Rust. From versions alpha.13 to alpha.81, RustFS logs sensitive credential
7.5HIGH
CVE-2026-21862
all versions
RustFS is a distributed object storage system built in Rust. Prior to version alpha.78, IP-based access control can be bypassed: g
7.5HIGH
CVE-2026-22782
all versions
RustFS is a distributed object storage system built in Rust. From >= 1.0.0-alpha.1 to 1.0.0-alpha.79, invalid RPC signatures cause
7.5HIGH
CVE-2026-22043
all versions
RustFS is a distributed object storage system built in Rust. In versions 1.0.0-alpha.13 through 1.0.0-alpha.78, a flawed `deny_onl
9.8CRITICAL
CVE-2026-22042
all versions
RustFS is a distributed object storage system built in Rust. Prior to version 1.0.0-alpha.79, he ImportIam admin API validates p
8.8HIGH
CVE-2025-69255
all versions
RustFS is a distributed object storage system built in Rust. In versions 1.0.0-alpha.13 to 1.0.0-alpha.77, a malformed gRPC GetMet
4.0MEDIUM
CVE-2025-68705
all versions
RustFS is a distributed object storage system built in Rust. In versions 1.0.0-alpha.13 to 1.0.0-alpha.78, RustFS contains a path
9.8CRITICAL
CVE-2025-68926
all versions
RustFS is a distributed object storage system built in Rust. In versions prior to 1.0.0-alpha.78, RustFS implements gRPC authentic
9.8CRITICAL
threatengine.sh