A vulnerability was found in RsyncProject rsync up to 3.4.x . It has been classified as problematic . Affected is the function lstat of the component Sender Directory Scanning Logic . The manipulation leads to race condition. This vulnerability is uniquely identified as CVE-2026-53801 . The attack is possible to be carried out remotely. No exploit exists. Upgrading the affected component is recommended.