A missing authorization vulnerability has been reported to affect QuMagie. The remote attackers can then exploit the vulnerability to access unauthorized data or perform unauthorized actions.
We have already fixed the vulnerability in the following version:
QuMagie 2.9.0 and later
We have already fixed the vulnerability in the following version:
QuMagie 2.9.0 and later
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
We have already fixed the vulnerability in the following version: QuMagie 2.9.0 and later
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://www.qnap.com/en/security-advisory/qsa-26-10 |
|
History
Wed, 10 Jun 2026 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A missing authorization vulnerability has been reported to affect QuMagie. The remote attackers can then exploit the vulnerability to access unauthorized data or perform unauthorized actions. We have already fixed the vulnerability in the following version: QuMagie 2.9.0 and later | |
| Title | QuMagie | |
| Weaknesses | CWE-359 CWE-862 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: qnap
Published:
Updated: 2026-06-10T03:15:03.739Z
Reserved: 2026-02-12T02:21:35.482Z
Link: CVE-2026-26237
No data.
Status : Received
Published: 2026-06-10T04:17:19.067
Modified: 2026-06-10T04:17:19.067
Link: CVE-2026-26237
No data.
OpenCVE Enrichment
Updated: 2026-06-10T04:30:06Z