A vulnerability classified as problematic has been found in RustFS. This affects the function
check_object_lock_for_deletion of the file crates/ecstore/src/bucket/object_lock/objectlock_sys.rs of the component Object Lock. The manipulation leads to improper privilege management.
This vulnerability is referenced as CVE-2026-73288. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.