CVE-2025-66593

An origin validation error vulnerability in Synology Assistant before 7.0.6-50085 allows local users to write arbitrary files with restricted content and conduct denial-of-service during installation.

medium 6.1 CVSS 3.1
Published: May 27, 2026
Modified: Jun 2, 2026
Vendor: Synology
Product: Assistant

Description

An origin validation error vulnerability in Synology Assistant before 7.0.6-50085 allows local users to write arbitrary files with restricted content and conduct denial-of-service during installation.

References

Related CVEs