LIVE · cybersecurity feed
Live wire
vendor

Qnap

29 CVEs published in the last four months. Exploited flaws first.

Critical10
High13
Medium6
Exploited (KEV)0

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2026-440839.8criticalqumagieAn authorization bypass through user-controlled key vulnerability has been reported to affect QuMagie.88d ago
CVE-2026-229019.8criticalqunetswitchA command injection vulnerability has been reported to affect QuNetSwitch.169d ago
CVE-2025-593889.8criticalhyper data protectorA use of hard-coded password vulnerability has been reported to affect Hyper Data Protector.178d ago
CVE-2025-662769.8criticalqtsQuTS hero is not affected.88d ago
CVE-2026-228979.8criticalqunetswitchA command injection vulnerability has been reported to affect QuNetSwitch.169d ago
CVE-2026-228989.8criticalqvr proA missing authentication for critical function vulnerability has been reported to affect QVR Pro.169d ago
CVE-2026-229009.8criticalqunetswitchA use of hard-coded credentials vulnerability has been reported to affect QuNetSwitch.169d ago
CVE-2026-262419.1criticalfile stationA buffer overflow vulnerability has been reported to affect File Station 5.87d ago
CVE-2025-593839.1criticalmedia streaming add-onA buffer overflow vulnerability has been reported to affect Media Streaming Add-On.169d ago
CVE-2026-262409.1criticalfile stationA buffer overflow vulnerability has been reported to affect File Station 5.87d ago
CVE-2025-584688.8highnotification centerA cross-site request forgery (CSRF) vulnerability has been reported to affect Notification Center.88d ago
CVE-2026-247248.1highfile stationAn incorrect authorization vulnerability has been reported to affect File Station 6.88d ago
CVE-2026-262398.1highfile stationA buffer overflow vulnerability has been reported to affect File Station 5.88d ago
CVE-2026-262367.5highqumagieA missing authorization vulnerability has been reported to affect QuMagie.88d ago
CVE-2026-262377.5highqumagieA missing authorization vulnerability has been reported to affect QuMagie.88d ago
CVE-2025-662817.2highqtsA NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions.88d ago
CVE-2026-228937.2highqtsA command injection vulnerability has been reported to affect several QNAP operating system versions.88d ago
CVE-2026-247167.2highqtsA NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions.88d ago
CVE-2026-247197.2highqtsA command injection vulnerability has been reported to affect several QNAP operating system versions.88d ago
CVE-2025-628507.2highquts heroA NULL pointer dereference vulnerability has been reported to affect several QNAP operating system versions.88d ago
CVE-2025-662737.2highqtsA command injection vulnerability has been reported to affect several QNAP operating system versions.88d ago
CVE-2025-662797.2highqtsA command injection vulnerability has been reported to affect several QNAP operating system versions.88d ago
CVE-2025-662807.2highqtsAn integer overflow or wraparound vulnerability has been reported to affect several QNAP operating system versions88d ago
CVE-2025-628436.8mediumqurouterAn improper restriction of communication channel to intended endpoints vulnerability has been reported to affect Q169d ago
CVE-2025-628456.7mediumqurouterAn improper neutralization of escape, meta, or control sequences vulnerability has been reported to affect QHora.169d ago
CVE-2026-229026.7mediumqunetswitchA command injection vulnerability has been reported to affect QuNetSwitch.169d ago
CVE-2025-628466.7mediumqurouterAn SQL injection vulnerability has been reported to affect QHora.169d ago
CVE-2025-628445.5mediumqurouterA weak authentication vulnerability has been reported to affect QHora.169d ago
CVE-2026-228954.8mediumquftpA cross-site scripting (XSS) vulnerability has been reported to affect QuFTP Service.169d ago

Filter the full tracker by Qnap