CVE-2018-13296: Synology Mailplus Server

High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.

Uncontrolled resource consumption vulnerability in TLS configuration in Synology MailPlus Server before 2.0.5-0606 allows remote attackers to conduct denial-of-service attacks via client-initiated renegotiation.

Affected products

  • Synology Mailplus Server: before 2.0.5-0606 (fixed in 2.0.5-0606)

Published 2019-04-01. Last modified 2026-06-17.