Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Synology — Vulnerabilities & Security Advisories 271

Browse all 271 CVE security advisories affecting Synology. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Synology operates primarily in the network-attached storage (NAS) sector, providing hardware and software solutions for data management and backup. With 271 recorded Common Vulnerabilities and Exposures (CVEs), the platform has historically been susceptible to critical security flaws, including remote code execution, cross-site scripting, and privilege escalation vulnerabilities. These issues often stem from insecure default configurations, weak authentication mechanisms, and unpatched web interface components. Notable incidents include the discovery of backdoors in certain firmware versions and widespread exploitation of unauthenticated access points, which allowed attackers to gain full system control. The high volume of CVEs reflects the complexity of its web-based management interfaces and the persistent targeting of IoT devices by threat actors. Users are advised to maintain strict update protocols and disable unnecessary services to mitigate these known risks effectively.

CVE IDTitleCVSSSeverityPublished
CVE-2022-22679 Synology DiskStation Manager 路径遍历漏洞 — DiskStation Manager (DSM)CWE-22 6.5 Medium2022-02-07
CVE-2021-43929 Synology DiskStation Manager 跨站脚本漏洞 — DiskStation Manager (DSM)CWE-74 6.5 Medium2022-02-07
CVE-2021-43928 Synology DiskStation Manager 操作系统命令注入漏洞 — Mail StationCWE-78 9.9 Critical2022-02-07
CVE-2021-43927 Synology DiskStation Manager SQL注入漏洞 — DiskStation Manager (DSM)CWE-89 4.7 Medium2022-02-07
CVE-2021-43926 Synology DiskStation Manager SQL注入漏洞 — DiskStation Manager (DSM)CWE-89 4.7 Medium2022-02-07
CVE-2021-43925 Synology DiskStation Manager SQL注入漏洞 — DiskStation Manager (DSM)CWE-89 4.7 Medium2022-02-07
CVE-2022-22680 Synology DiskStation Manager 信息泄露漏洞 — DiskStation Manager (DSM)CWE-200 5.3 Medium2022-02-07
CVE-2021-29084 Synology DiskStation DS418play 注入漏洞 — DiskStation Manager (DSM)CWE-74 7.5 High2021-06-23
CVE-2021-29085 Synology DiskStation Manager 注入漏洞 — DiskStation Manager (DSM)CWE-74 8.6 High2021-06-23
CVE-2021-29087 Synology DiskStation Manager 路径遍历漏洞 — DiskStation Manager (DSM)CWE-22 7.5 High2021-06-23
CVE-2021-27649 Synology DiskStation Manager 资源管理错误漏洞 — DiskStation Manager (DSM)CWE-416 9.8 Critical2021-06-23
CVE-2021-29086 Synology DiskStation Manager 信息泄露漏洞 — DiskStation Manager (DSM)CWE-200 5.3 Medium2021-06-23
CVE-2021-34808 Synology Media Server 代码问题漏洞 — Media ServerCWE-918 5.8 Medium2021-06-18
CVE-2021-34809 Synology Download Station 命令注入漏洞 — Download StationCWE-77 9.9 Critical2021-06-18
CVE-2021-34810 Synology Download Station 安全漏洞 — Download StationCWE-269 9.9 Critical2021-06-18
CVE-2021-34811 Synology Download Station 代码问题漏洞 — Download StationCWE-918 5.0 Medium2021-06-18
CVE-2021-34812 Synology Calendar 信任管理问题漏洞 — Synology CalendarCWE-798 5.8 Medium2021-06-18
CVE-2021-29089 Synology Photo Station SQL注入漏洞 — Synology Photo StationCWE-89 9.8 Critical2021-06-02
CVE-2021-29090 Synology Photo Station SQL注入漏洞 — Synology Photo StationCWE-89 7.2 High2021-06-02
CVE-2021-29091 Synology Photo Station 路径遍历漏洞 — Synology Photo StationCWE-22 7.7 High2021-06-02
CVE-2021-33181 Synology Video Station Video Station 代码问题漏洞 — Synology Video StationCWE-918 6.6 Medium2021-06-01
CVE-2021-33182 Synology DiskStation Manager 路径遍历漏洞 — Synology DiskStation Manager (DSM)CWE-22 5.0 Medium2021-06-01
CVE-2021-33184 Synology Download Station 代码问题漏洞 — Synology Download StationCWE-918 7.7 High2021-06-01
CVE-2021-33183 Docker 路径遍历漏洞 — Synology DockerCWE-22 7.9 High2021-06-01
CVE-2021-29088 Synology DiskStation Manager 路径遍历漏洞 — Synology DiskStation Manager (DSM)CWE-22 7.8 High2021-06-01
CVE-2021-29092 Synology Photo Station 代码问题漏洞 — Synology Photo StationCWE-434 8.8 High2021-06-01
CVE-2021-33180 Synology Media Server SQL注入漏洞 — Synology Media ServerCWE-89 7.3 High2021-06-01
CVE-2021-31439 Synology DiskStation DSplay 安全漏洞 — DiskStation ManagerCWE-122 8.8 -2021-05-21
CVE-2021-27648 Synology Antivirus Essential 安全漏洞 — Synology Antivirus EssentialCWE-610 9.0 Critical2021-04-28
CVE-2021-29083 Synology DiskStation Manager 操作系统命令注入漏洞 — Synology DiskStation Manager (DSM)CWE-78 7.2 High2021-04-01

This page lists every published CVE security advisory associated with Synology. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.