CVE-2025-58464: QNAP Qumagie
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
A relative path traversal vulnerability has been reported to affect QuMagie. If a remote attacker, they can then exploit the vulnerability to read the contents of unexpected files or system data. We have already fixed the vulnerability in the following version: QuMagie 2.7.3 and later
Affected products
- QNAP Qumagie: from 2.7.0, before 2.7.3 (fixed in 2.7.3)
Published 2025-11-07. Last modified 2026-06-17.