Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Synology — Vulnerabilities & Security Advisories 295

Browse all 295 CVE security advisories affecting Synology. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Synology operates primarily in the network-attached storage (NAS) sector, providing hardware and software solutions for data management and backup. With 271 recorded Common Vulnerabilities and Exposures (CVEs), the platform has historically been susceptible to critical security flaws, including remote code execution, cross-site scripting, and privilege escalation vulnerabilities. These issues often stem from insecure default configurations, weak authentication mechanisms, and unpatched web interface components. Notable incidents include the discovery of backdoors in certain firmware versions and widespread exploitation of unauthenticated access points, which allowed attackers to gain full system control. The high volume of CVEs reflects the complexity of its web-based management interfaces and the persistent targeting of IoT devices by threat actors. Users are advised to maintain strict update protocols and disable unnecessary services to mitigate these known risks effectively.

CVE ID Title CVSS Severity Published
CVE-2026-4793 Synology Assistant 权限许可和访问控制问题漏洞 — Synology Assistant CWE-276 7.3 High 2026-08-03
CVE-2024-47263 Synology Hyper Backup 路径遍历漏洞 — Hyper Backup CWE-22 4.1 Medium 2026-06-03
CVE-2024-47273 Synology Hyper Backup 路径遍历漏洞 — Hyper Backup CWE-22 4.3 Medium 2026-06-03
CVE-2022-49036 Synology Active Backup for Business Recovery Media Creator 安全漏洞 — Synology Active Backup for Business Recovery Media Creator CWE-829 7.8 High 2026-06-03
CVE-2022-49042 Synology Hyper Backup Explorer 安全漏洞 — Synology Hyper Backup Explorer CWE-829 7.8 High 2026-06-03
CVE-2023-52951 Synology Note Station Client 安全漏洞 — Synology Note Station Client CWE-319 5.9 Medium 2026-06-03
CVE-2026-2237 Synology DSM 安全漏洞 — Storage Manager CWE-598 6.2 Medium 2026-05-27
CVE-2025-66593 Synology Assistant 访问控制错误漏洞 — Synology Assistant CWE-346 6.1 Medium 2026-05-27
CVE-2025-66592 Synology Active Backup for Business Agent 访问控制错误漏洞 — Synology Active Backup for Business Agent CWE-346 6.1 Medium 2026-05-27
CVE-2025-30028 Synology Active Backup for Business SQL注入漏洞 — Active Backup for Business CWE-89 8.6 High 2026-05-27
CVE-2025-14713 Synology C2 Identity Edge Server 安全漏洞 — C2 Identity Edge Server CWE-749 7.5 High 2026-05-27
CVE-2025-13593 Synology ActiveProtect Agent 访问控制错误漏洞 — ActiveProtect Agent CWE-346 6.1 Medium 2026-05-27
CVE-2025-12686 Synology BeeStation OS 安全漏洞 — BeeStation OS CWE-120 9.8 Critical 2026-05-27
CVE-2025-13392 Synology DiskStation Manager(DSM) 代码问题漏洞 — DiskStation Manager (DSM) CWE-754 8.1 High 2026-05-27
CVE-2025-13167 Synology Contacts for DSM 安全漏洞 — Synology Contacts CWE-79 5.4 Medium 2026-05-27
CVE-2025-10466 Synology Safe Access 跨站脚本漏洞 — Safe Access CWE-79 5.9 Medium 2026-05-27
CVE-2024-47272 Synology Surveillance Station 安全漏洞 — Surveillance Station CWE-863 2.7 Low 2026-05-27
CVE-2024-47271 Synology Surveillance Station 安全漏洞 — Surveillance Station CWE-522 4.9 Medium 2026-05-27
CVE-2024-47270 Synology Surveillance Station 安全漏洞 — Surveillance Station CWE-281 2.7 Low 2026-05-27
CVE-2024-47269 Synology Surveillance Station 安全漏洞 — Surveillance Station CWE-319 4.9 Medium 2026-05-27
CVE-2024-47268 Synology Surveillance Station 安全漏洞 — Surveillance Station CWE-862 4.9 Medium 2026-05-27
CVE-2024-47267 Synology Surveillance Station 路径遍历漏洞 — Surveillance Station CWE-22 2.7 Low 2026-05-27
CVE-2024-11399 Synology BeeDrive 安全漏洞 — BeeDrive for desktop CWE-552 6.8 Medium 2026-05-27
CVE-2023-52945 Synology BeeDrive 代码问题漏洞 — BeeDrive for desktop CWE-427 7.8 High 2026-05-27
CVE-2021-47961 Synology SSL VPN Client 安全漏洞 — Synology SSL VPN Client CWE-256 8.1 High 2026-04-10
CVE-2021-47960 Synology SSL VPN Client 安全漏洞 — Synology SSL VPN Client CWE-552 6.5 Medium 2026-04-10
CVE-2026-3091 Synology Presto Client 代码问题漏洞 — Synology Presto Client CWE-427 6.7 Medium 2026-02-24
CVE-2025-8074 Synology BeeDrive 访问控制错误漏洞 — BeeDrive for desktop CWE-346 5.6 Medium 2025-12-04
CVE-2025-54160 Synology BeeDrive 路径遍历漏洞 — BeeDrive for desktop CWE-22 7.8 High 2025-12-04
CVE-2025-54159 Synology BeeDrive 安全漏洞 — BeeDrive for desktop CWE-862 7.5 High 2025-12-04

This page lists every published CVE security advisory associated with Synology. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.