🔔 Premium Features
🔍 Filter Threats
| Title | Severity | PoC | Actively Exploited | Source | Date |
|---|---|---|---|---|---|
| CVE-2026-40538 An improper restriction of excessive authentication attempts vulnerability in Auto block in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, ... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-40535 An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Desktop API in Synology DiskStation Manag... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-40533 An exposure of sensitive information through data queries vulnerability in Desktop API in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, 7.... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-85410 The Master Addons for Elementor – Elementor Addons, Widgets, Mega Menu Builder, Popup Builder, Widget Builder & Template Kits plugin for WordPre... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-83561 The Complianz GDPR/CCPA Cookie Consent Banner plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Comment Content via Elementor Cook... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2025-13533 The CSS & JavaScript Toolbox plugin for WordPress is vulnerable to Stored Cross-Site Scripting in all versions up to, and including, 12.0.6 via th... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-40537 A server-side request forgery (SSRF) vulnerability in PersonMail API in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, 7.2.2-72806-7 and 7.... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-40536 An improper limitation of a pathname to a restricted directory ('path traversal') vulnerability in Audio API in Synology DiskStation Manager... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-40534 An improper neutralization of input during web page generation ('cross-site scripting') vulnerability in Video API in Synology DiskStation M... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-40532 A direct request ('forced browsing') vulnerability in Wallpaper Path in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, 7.2.2-7280... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-40531 An integer overflow or wraparound vulnerability in File Operation in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, 7.2.2-72806-7 and 7.3.2... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-4036 An improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Sharing API in Synology DiskStation... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-40530 An improper neutralization of CRLF sequences ('CRLF injection') vulnerability in User API in Synology DiskStation Manager (DSM) before 7.2.1... | HIGH | ????? | ????? | NVD | 1 day ago |
| CVE-2026-56595 HCL BigFix Service Management is affected by a CORS Misconfiguration vulnerability due to improperly validated origin headers, which could allow an at... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-56597 HCL BigFix Service Management is affected by a Sensitive Information Leakage vulnerability, which could allow an unauthenticated attacker to extract i... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-56592 HCL BigFix Service Management is affected by an Improper Authentication validation vulnerability related to inadequate account lockouts, which could a... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-13683 An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in EventScheduler API in Synology Disk... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-13623 An improper neutralization of input during web page generation ('Cross-site Scripting') vulnerability in Theme API in Synology DiskStation M... | MEDIUM | ????? | ????? | NVD | 1 day ago |
| CVE-2026-13666 An improper neutralization of CRLF sequences ('CRLF Injection') vulnerability in Sharing API in Synology DiskStation Manager (DSM) before 7.... | LOW | ????? | ????? | NVD | 1 day ago |
| CVE-2026-56590 HCL BigFix Service Management is affected by an Unrestricted File Upload vulnerability due to improper file validation controls, which could allow an ... | MEDIUM | ????? | ????? | NVD | 1 day ago |