Loading HuntDB...

GHSA-6gf3-qc4m-f686

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

A cross-site scripting (XSS) vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow authenticated users to inject malicious code via a network.

We have already fixed the vulnerability in the following versions:
QTS 5.1.6.2722 build 20240402 and later
QuTS hero h5.1.6.2734 build 20240414 and later

Related CVEs

Key Information

GHSA ID
GHSA-6gf3-qc4m-f686
Published
September 6, 2024 6:31 PM
Last Modified
September 6, 2024 6:31 PM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 30, 2025 6:26 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.