Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Joseph Teo

Researcher fromCSIT
#16128of 56,330
17.8Total CVSS
Vulnerabilities · 2
High
1
Critical
1
PT-2026-82877
9
2026-08-28
Synology · Synology Chat Server · CVE-2026-40541
**Name of the Vulnerable Software and Affected Versions** Synology Chat Server versions prior to 2.4.5-22148 **Description** An improper neutralization of input during web page generation, known as Cross-site Scripting (XSS), occurs in the extract domain component. This allows remote authenticated users, through UI interaction, to read or write arbitrary files and conduct denial-of-service attacks in DSM. This issue may also expose users to session theft, credential compromise, or unauthorized actions within the application. **Recommendations** Update Synology Chat Server to version 2.4.5-22148 or later. Restrict access to administrative interfaces. Monitor for unusual login activity or suspicious chat content. Educate users to avoid clicking unexpected links or embedded content.
PT-2025-52402
8.8
2025-12-19
Cisco Systems · Linksys E9450-Sg · CVE-2025-52692
**Name of the Vulnerable Software and Affected Versions** versions prior to 2025-52692 **Description** Exploitation of this issue could allow an attacker with local network access to access certain administration functions without login credentials by sending a specially crafted URL. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.