CVE-2026-30795

RustDesk Client <=1.4.5 - Info Disclosure

Title source: llm

Description

Cleartext Transmission of Sensitive Information vulnerability in rustdesk-client RustDesk Client rustdesk-client on Windows, MacOS, Linux, iOS, Android (Heartbeat sync loop modules) allows Sniffing Attacks. This vulnerability is associated with program files src/hbbs_http/sync.Rs and program routines Heartbeat JSON payload construction (preset-address-book-password). This issue affects RustDesk Client: through 1.4.5.

Scores

EPSS 0.0003
EPSS Percentile 7.2%

Classification

CWE
CWE-319
Status draft

Timeline

Published Mar 05, 2026
Tracked Since Mar 05, 2026