Synology
Security Scorecard
Score
100A
Total CVEs
10
Patch Rate
100%
10 patched
Avg Response
-
days to patch
Critical Gaps
0
exploitable, no detection
Severity Breakdown
Critical1
High4
Medium5
Low0
Patch Status
Patched10 (100%)
Partial/Workaround0 (0%)
Unpatched0 (0%)
CVEs (10)
| CVE ID | Title | Severity | Score | Days | Patch |
|---|---|---|---|---|---|
| CVE-2024-5401 | - | Medium | 4.3 | - | Patched |
| CVE-2025-29845 | - | Medium | 4.3 | - | Patched |
| CVE-2024-45538 | Synology DiskStation Manager WebAPI Cross-Site Request Forgery (CSRF) Vulnerability | Critical | 9.6 | - | Patched |
| CVE-2025-54158 | BeeDrive Vulnerability | High | 7.8 | - | Patched |
| CVE-2024-45539 | Synology DiskStation Manager (DSM) CGI Component Denial-of-Service Vulnerability | High | 7.5 | - | Patched |
| CVE-2025-54159 | BeeDrive Desktop Vulnerability | High | 7.5 | - | Patched |
| CVE-2025-29846 | Synology Portenable CGI Vulnerability | High | 7.2 | - | Patched |
| CVE-2025-2848 | Synology Mail Server Remote Authenticated Settings Bypass | Medium | 6.3 | - | Patched |
| CVE-2025-8074 | BeeDrive Origin Validation Error Vulnerability | Medium | 5.6 | - | Patched |
| CVE-2025-29843 | Synology FileStation Thumb CGI Bypass | Medium | 5.4 | - | Patched |