Medium severity6.5NVD Advisory· Published Jun 30, 2019· Updated Jun 17, 2026
CVE-2019-11827
CVE-2019-11827
Description
Cross-site scripting (XSS) vulnerability in SYNO.NoteStation.Shard in Synology Note Station before 2.5.3-0863 allows remote attackers to inject arbitrary web script or HTML via the object_id parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<2.5.3-0863+ 2 more
- (no CPE)range: <2.5.3-0863
- (no CPE)range: unspecified
- cpe:2.3:a:synology:note_station:*:*:*:*:*:*:*:*range: <2.5.3-0863
Patches
Vulnerability mechanics
References
1- www.synology.com/security/advisory/Synology_SA_19_08nvdVendor Advisory
News mentions
0No linked articles in our index yet.