Known vulnerabilities in QVPN Device Client for Mac
Vendor:
QNAP Systems, Inc.
Software:
QVPN Device Client for Mac
Software CPE:
cpe:2.3:a:qnap_systems:qvpn_device_client_for_mac:*:*:*:*:*:*:*:*
Website:
https://www.qnap.com
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
7
Breakdown by Severity Chart
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU120950 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2025-53594 |
CWE-22 | Low | 2.2.8 | 05.01.2026 |
SB2026010586 |
||
| #VU105463 - Time-of-check Time-of-use (TOCTOU) Race Condition CVE-2024-53694 |
CWE-367 | Low | 2.2.5 | 10.03.2025 |
SB2025031016 |