CVE-2026-13666 | Synology DiskStation Manager up to 7.4-90074 Sharing API crlf injection
A vulnerability identified as problematic has been detected in Synology DiskStation Manager up to 7.2.0/7.2.1-69057-11/7.2.2-72806-8/7.3.2-86009-3/7.4-90074. Impacted is an unknown function of the component Sharing API. The manipulation leads to crlf injection.
This vulnerability is listed as CVE-2026-13666. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.VulDB Recent EntriesRead More