Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 18 Sep 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 18 Sep 2026 08:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An exposure of sensitive information through data queries vulnerability in Desktop API in Synology DiskStation Manager (DSM) before 7.2.1-69057-10, 7.2.2-72806-7 and 7.3.2-86009-2 allows remote attackers to obtain non-sensitive information. | |
| Weaknesses | CWE-202 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: synology
Published:
Updated: 2026-09-18T10:43:54.188Z
Reserved: 2026-04-14T01:01:14.606Z
Link: CVE-2026-40533
Updated: 2026-09-18T10:43:45.834Z
Status : Awaiting Analysis
Published: 2026-09-18T09:16:40.627
Modified: 2026-09-18T19:07:38.320
Link: CVE-2026-40533
No data.
OpenCVE Enrichment
No data.
-
CWE-202
Exposure of Sensitive Information Through Data Queries