QNAP warns of a critical flaw in its Windows backup software, so update now



  • CVE-2025-55315 allows HTTP request smuggling in ASP.NET Core (severity 9.9/10)
  • QNAP urges NetBak PC Agent users to patch affected ASP.NET Core components
  • Updates available by reinstalling or manually installing the .NET 8.0 Runtime

QNAP warns its customers to patch a critical ASP.NET Core vulnerability to protect their NetBak PC Agent installations.

In a security advisory, the NAS device maker said that Microsoft recently disclosed a bug affecting ASP.NET Core that “could allow an attacker to bypass security controls through HTTP request smuggling.”



Leave a Comment

Your email address will not be published. Required fields are marked *