Known Vulnerabilities for Nas Proxy Server by Qnap
Listed below are 7 of the newest known vulnerabilities associated with "Nas Proxy Server" by "Qnap".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-100664 json | Netty's HTTP/3 codec (io.netty:netty-codec-http3) versions 4.2.2.Final through 4.2.17.Final builds the HTTP/3 :authority pseu... | Not Provided | 2026-09-26 | 2026-09-28 |
| CVE-2026-100391 json | MediaFlow Proxy through 2.4.9 contains a server-side request forgery vulnerability in the /proxy routes due to missing and in... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-97687 json | urllib3 is an HTTP client library for Python. From 1.26.0 until 2.8.0, the proxy_ssl_context, proxy_assert_hostname, proxy_as... | Not Provided | 2026-09-29 | 2026-09-30 |
| CVE-2026-96770 json | All published s2s-proxy versions through 0.2.2 are affected. In versions 0.1.16 through 0.2.2, TLS server listeners use Go's ... | Not Provided | 2026-09-23 | 2026-09-23 |
| CVE-2026-93561 json | A flaw was found in io.netty/netty-codec-memcache. The Memcache binary protocol codec incorrectly reads `keyLength` and `extr... | Not Provided | 2026-09-18 | 2026-09-25 |
| CVE-2026-92812 json | decap-server contains a path traversal vulnerability in the local proxy containment guard that uses plain string prefix compa... | Not Provided | 2026-09-16 | 2026-09-19 |
| CVE-2026-92804 json | Nango through 0.70.4 fails to validate caller-supplied connection configuration values interpolated into provider token and p... | Not Provided | 2026-09-16 | 2026-09-21 |
| CVE-2026-92142 json | Apache Karaf exposes a JMX MBeanServer guarded by KarafMBeanServerGuard, which enforces role-based access control (RBAC) on ... | Not Provided | 2026-09-29 | 2026-10-01 |
| CVE-2026-91766 json | When the http:// stream wrapper follows a redirect it forwards the user-supplied Authorization, Cookie and Proxy-Authorizatio... | Not Provided | 2026-09-25 | 2026-09-28 |
| CVE-2026-91154 json | Missing Authentication for Critical Function (CWE-306) in the product cache revalidation Server Action (src/app/actions.ts, r... | Not Provided | 2026-09-28 | 2026-09-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Qnap | Nas Proxy Server | 1.3.0 |