Synology
326 tracked vulnerabilities.
CVE-2026-3091
MEDIUM
Synology Presto Client <2.1.3-0672 - DLL Hijacking
Feb 24, 2026
CVSS 6.7
EPSS 0.00
CVE-2025-8074
MEDIUM
Synology Beedrive < 1.4.3-13973 - Origin Validation Error
Dec 04, 2025
CVSS 5.6
EPSS 0.00
CVE-2025-54160
HIGH
Synology Beedrive < 1.4.2-13960 - Path Traversal
Dec 04, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-54159
HIGH
Synology Beedrive < 1.4.2-13960 - Missing Authorization
Dec 04, 2025
CVSS 7.5
EPSS 0.00
CVE-2025-54158
HIGH
Synology Beedrive < 1.4.2-13960 - Missing Authentication
Dec 04, 2025
CVSS 7.8
EPSS 0.00
CVE-2025-2848
MEDIUM
Synology Mail Server < 1.7.6-10676 - Missing Authorization
Dec 04, 2025
CVSS 6.3
EPSS 0.00
CVE-2025-29846
HIGH
Portenable CGI - Info Disclosure
Dec 04, 2025
CVSS 7.2
EPSS 0.00
CVE-2025-29845
MEDIUM
VideoPlayer2 - Info Disclosure
Dec 04, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-29844
MEDIUM
FileStation file cgi <unknown> - Info Disclosure
Dec 04, 2025
CVSS 4.3
EPSS 0.00
CVE-2025-29843
MEDIUM
FileStation <thumb cgi - Info Disclosure
Dec 04, 2025
CVSS 5.4
EPSS 0.00
CVE-2024-5401
MEDIUM
Synology DSM <7.1.1-42962-8, <7.2.1-69057-2, <7.2.2-72806 - Privile...
Dec 04, 2025
CVSS 4.3
EPSS 0.00
CVE-2024-45539
HIGH
Synology DSM <7.2.1-69057-2,7.2.2-72806 - DoS
Dec 04, 2025
CVSS 7.5
EPSS 0.00
CVE-2024-45538
CRITICAL
Synology DSM <7.2.1-69057-2,7.2.2-72806 & DSMUC <3.1.4-23079 - CSRF
Dec 04, 2025
CVSS 9.6
EPSS 0.00
CVE-2024-53288
MEDIUM
Synology Router Manager < 1.3.1-9346 - XSS
Jul 23, 2025
CVSS 5.9
EPSS 0.00
CVE-2024-53287
MEDIUM
Synology Router Manager < 1.3.1-9346 - XSS
Jul 23, 2025
CVSS 5.9
EPSS 0.00
CVE-2024-53286
HIGH
Synology Router Manager < 1.3.1-9346 - OS Command Injection
Jul 23, 2025
CVSS 7.2
EPSS 0.00
CVE-2025-4679
MEDIUM
Synology Active Backup for Microsoft 365 - Info Disclosure
May 16, 2025
CVSS 6.5
EPSS 0.00
CVE-2025-1021
HIGH
Synology Diskstation Manager < 7.1.1-42962-8 - Missing Authorization
Apr 23, 2025
CVSS 7.5
EPSS 0.00
CVE-2024-50631
HIGH
Synology Drive Server < 3.0.4-12699 - SQL Injection
Mar 19, 2025
CVSS 7.5
EPSS 0.00
CVE-2024-50630
HIGH
Synology Drive Server < 3.0.4-12699 - Missing Authentication
Mar 19, 2025
CVSS 7.5
EPSS 0.01
CVE-2024-50629
MEDIUM
Synology BeeStation OS <1.1-65374 & DSM <7.1.1-42962-7,7.2-64570-4,...
Mar 19, 2025
CVSS 5.3
EPSS 0.00
CVE-2024-11131
CRITICAL
Synology Bc500 Firmware < 1.2.0-0525 - Out-of-Bounds Read
Mar 19, 2025
CVSS 9.8
EPSS 0.01
CVE-2024-10442
CRITICAL
Synology Replication Service <1.0.12-0066, 1.2.2-0353, 1.3.0-0423 -...
Mar 19, 2025
CVSS 10.0
EPSS 0.01
CVE-2024-10445
MEDIUM
Synology Beestation OS - Improper Certificate Validation
Mar 19, 2025
CVSS 4.3
EPSS 0.00
CVE-2024-10444
HIGH
Synology Diskstation Manager - Improper Certificate Validation
Mar 19, 2025
CVSS 7.5
EPSS 0.00
Products
diskstation_manager 96
router_manager 59
photo_station 33
vs960hd_firmware 22
diskstation_manager_unified_controller 20
surveillance_station 19
skynas 16
skynas_firmware 13
calendar 11
tc500_firmware 9
bc500_firmware 9
download_station 8
active_backup_for_business_agent 7
drive_server 6
video_station 6
media_server 6
drive_client 6
note_station 5
dns_server 5
radius_server 4
audio_station 4
directory_server 4
beedrive 4
chat 3
carddav_server 3
office 3
beestation_os 3
ssl_vpn_client 3
file_station 3
mailplus_server 3
Quick Filters