Privilege Escalation in Duplicati for Windows by Vendors
CVE-2026-76159
7HIGH
What is CVE-2026-76159?
A security vulnerability in the configuration loader of Duplicati for Windows versions prior to 2.4.0.0 allows local low-privileged attackers to escalate their privileges. By manipulating an attacker-controlled preload.json file, these attackers can gain unauthorized access to critical system resources, potentially compromising system integrity and security.
Affected Version(s)
Duplicati Windows 0
