CVE-2026-3091
EUVD-2026-740524.02.2026, 03:16
An uncontrolled search path element vulnerability in Synology Presto Client before 2.1.3-0672 allows local users to read or write arbitrary files during installation by placing a malicious DLL in advance in the same directory as the installer.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| synology | presto_client | 𝑥 < 2.1.3-0672 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration