CVE-2026-13683 UNKNOWN

CVE-2026-13683

Published: 2026-09-18

Description

An improper neutralization of special elements used in an SQL command ('SQL Injection') vulnerability in EventScheduler API in Synology DiskStation Manager (DSM) before 7.2.1-69057-12, 7.2.2-72806-9, 7.3.2-86009-4 and 7.4-90075 allows remote authenticated users with administrator privileges to obtain non-sensitive information.

AI Intelligence Brief

AI Intelligence

Analyzing vulnerability vectors…