Synology-SA-26:01 Storage Manager
Synology released a Storage Manager package security update for DSM 7.3 and DSM 7.2.x after disclosing a local information exposure issue.
Manufacturer page
Synology is one of the best fits for the site thanks to consistent advisory structure, dates, CVEs, severity, and fixed releases. Latest notable addition: Synology-SA-26:01 for the DSM Storage Manager package.
Synology released a Storage Manager package security update for DSM 7.3 and DSM 7.2.x after disclosing a local information exposure issue.
Safe Access for SRM 1.3 received a security update for a vulnerability that could allow remote authenticated administrator-level users to read or write limited files.
RADIUS Server for SRM 1.3 received a fix for an XSS issue that could let remote authenticated administrator-level users read or write limited files and conduct limited DoS.
Synology disclosed an SMB Service issue where remote authenticated users could write to limited files; DSM packages received fixed builds and SRM/BeeStation remained ongoing at publication time.
Multiple path traversal issues in SRM 1.3 allowed remote authenticated users to read metadata or read/write limited files.