An uncontrolled search path element vulnerability in...
Moderate severity
Unreviewed
Published
Feb 24, 2026
to the GitHub Advisory Database
•
Updated Feb 24, 2026
Description
Published by the National Vulnerability Database
Feb 24, 2026
Published to the GitHub Advisory Database
Feb 24, 2026
Last updated
Feb 24, 2026
An uncontrolled search path element vulnerability in Synology Presto Client before 2.1.3-0672 allows local users to read or write arbitrary files during installation by placing a malicious DLL in advance in the same directory as the installer.
References