CVE-2026-40534 | Synology DiskStation Manager up to 7.2.0/7.2.2-72806-6/7.3.2-86009-1 Video API cross site scripting

SecurityVulns

A vulnerability classified as problematic has been found in Synology DiskStation Manager up to 7.2.0/7.2.2-72806-6/7.3.2-86009-1. Affected by this issue is some unknown functionality of the component Video API. The manipulation leads to cross site scripting.

This vulnerability is documented as CVE-2026-40534. The attack can be initiated remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More