Vulnerability Description
A cross-site request forgery (CSRF) vulnerability has been reported to affect Notification Center. The remote attackers can then exploit the vulnerability to gain privileges or hijack user identities. We have already fixed the vulnerability in the following version: Notification Center 1.10.0.3291 and later
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Qnap | Notification Center | >= 1.10.0, < 1.10.0.3291 |
Related Weaknesses (CWE)
References
- https://www.qnap.com/en/security-advisory/qsa-26-13Vendor Advisory
FAQ
What is CVE-2025-58468?
CVE-2025-58468 is a vulnerability with a CVSS score of 8.8 (HIGH). A cross-site request forgery (CSRF) vulnerability has been reported to affect Notification Center. The remote attackers can then exploit the vulnerability to gain privileges or hijack user identities....
How severe is CVE-2025-58468?
CVE-2025-58468 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-58468?
Check the references section above for vendor advisories and patch information. Affected products include: Qnap Notification Center.