CVE-2025-8074: Synology Beedrive

Medium severity, CVSS 5.6. EPSS: 0.1% chance of exploitation in the next 30 days.

Origin validation error vulnerability in BeeDrive in Synology BeeDrive for desktop before 1.4.3-13973 allows local users to write arbitrary files with non-sensitive information via unspecified vectors.

Affected products

  • Synology Beedrive: before 1.4.3-13973 (fixed in 1.4.3-13973)

Published 2025-12-04. Last modified 2026-09-25.