Critical severity9.8NVD Advisory· Published Jun 10, 2026· Updated Jun 12, 2026
CVE-2025-66276
CVE-2025-66276
Description
QuTS hero is not affected.
We have already fixed the vulnerability in the following version: QTS 5.2.7.3256 build 20250913 and later
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
1- www.qnap.com/en/security-advisory/qsa-25-56nvdVendor Advisory
News mentions
1- QNAP QTS: Critical Command Injection and XSS Flaws Disclosed in BatchVypr Intelligence · Jun 10, 2026