A vulnerability described as critical has been identified in RsyncProject rsync up to 3.4.x . The affected element is the function chdir of the component Destination Directory Handler . The manipulation results in time-of-check time-of-use. This vulnerability is cataloged as CVE-2026-53796 . The attack may be launched remotely. There is no exploit available. Upgrading the affected component is recommended.