CVE-2026-6205 | Synology DiskStation Manager up to 7.4-90074 Upload API unrestricted upload
A vulnerability was found in Synology DiskStation Manager up to 7.2.0/7.2.1-69057-11/7.2.2-72806-8/7.3.2-86009-3/7.4-90074. It has been classified as critical. The impacted element is an unknown function of the component Upload API. The manipulation leads to unrestricted upload.
This vulnerability is uniquely identified as CVE-2026-6205. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.VulDB Recent EntriesRead More