Content Library · Advisory

Advisory 2026

Browse 895 2026 NetApp advisory records in the NetApp Black Box content library. Page 4 of 8.

Library JSON API

Showing all 120 items on this page

Advisory

June 2026 Apache Netty 4.1 and 4.2 Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0020/

NetApp published this interim advisory covering CVE-2026-44249, CVE-2026-44250, CVE-2026-44890, CVE-2026-44893, CVE-2026-48006, CVE-2026-48043, CVE-2026-48059, CVE-2026-50010, CVE-2026-50011, CVE-2026-50020, CVE-2026-50560, CVE-2026-45416, CVE-2026-45536, CVE-2026-45673, CVE-2026-45674, CVE-2026-46340, CVE-2026-47244, CVE-2026-47691; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-49759 Erlang/OTP Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0014/

NetApp published this interim advisory covering CVE-2026-49759; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP Select Deploy administration utility; SnapCenter.

Open source
Advisory

CVE-2026-49413 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0003/

NetApp published this final advisory covering CVE-2026-49413; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-46863 MySQL Server Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0016/

NetApp published this interim advisory covering CVE-2026-46863; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere; SnapCenter.

Open source
Advisory

CVE-2026-45259 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0005/

NetApp published this final advisory covering CVE-2026-45259; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-45256 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0004/

NetApp published this final advisory covering CVE-2026-45256; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-40971 Spring Boot Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0018/

NetApp published this interim advisory covering CVE-2026-40971; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-39827 Golang.Org/X/Crypto Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0013/

NetApp published this interim advisory covering CVE-2026-39827; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-28808 Erlang/OTP Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0015/

NetApp published this final advisory covering CVE-2026-28808; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-11906 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0010/

NetApp published this final advisory covering CVE-2026-11906; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-10109 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0007/

NetApp published this final advisory covering CVE-2026-10109; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-36372 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260626-0011/

NetApp published this final advisory covering CVE-2025-36372; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-49416 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0019/

NetApp published this final advisory covering CVE-2026-49416; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-49414 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0017/

NetApp published this final advisory covering CVE-2026-49414; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-49412 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0018/

NetApp published this final advisory covering CVE-2026-49412; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-48095 7-Zip Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0001/

NetApp published this interim advisory covering CVE-2026-48095; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-45257 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0020/

NetApp published this final advisory covering CVE-2026-45257; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-42501 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0004/

NetApp published this interim advisory covering CVE-2026-42501; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-42499 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0003/

NetApp published this interim advisory covering CVE-2026-42499; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-39836 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0005/

NetApp published this interim advisory covering CVE-2026-39836; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-39826 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0007/

NetApp published this interim advisory covering CVE-2026-39826; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-39825 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0011/

NetApp published this interim advisory covering CVE-2026-39825; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-39823 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0008/

NetApp published this interim advisory covering CVE-2026-39823; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-39819 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0010/

NetApp published this interim advisory covering CVE-2026-39819; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-39817 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0009/

NetApp published this interim advisory covering CVE-2026-39817; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-33748 Moby/Buildkit Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0014/

NetApp published this interim advisory covering CVE-2026-33748; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-33747 Moby/Buildkit Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0013/

NetApp published this interim advisory covering CVE-2026-33747; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-27145 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0006/

NetApp published this interim advisory covering CVE-2026-27145; the API labels exploitation information as **Public**. The API currently lists affected products as: Data Infrastructure Insights Telegraf Agent; NetApp Kubernetes Monitoring Operator; Trident; Trident Protect.

Open source
Advisory

CVE-2026-27139 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0012/

NetApp published this interim advisory covering CVE-2026-27139; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-10846 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0016/

NetApp published this final advisory covering CVE-2026-10846; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-10263 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260619-0015/

NetApp published this final advisory covering CVE-2025-10263; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

June 2026 Apache CXF Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260618-0004/

NetApp published this interim advisory covering CVE-2026-49875, CVE-2026-50623, CVE-2026-50627, CVE-2026-50628, CVE-2026-50629, CVE-2026-50630, CVE-2026-50631, CVE-2026-50632, CVE-2026-50633, CVE-2026-50634, CVE-2026-50645; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2026-44930 Apache CXF Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260618-0001/

NetApp published this interim advisory covering CVE-2026-44930; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2026-44618 Apache CXF Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260618-0003/

NetApp published this interim advisory covering CVE-2026-44618; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2026-44417 Apache CXF Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260618-0002/

NetApp published this interim advisory covering CVE-2026-44417; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2025-54988 Apache Tika Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260618-0005/

NetApp published this interim advisory covering CVE-2025-54988; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

May 2026 Golang Crypto Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0019/

NetApp published this interim advisory covering CVE-2026-39828, CVE-2026-39829, CVE-2026-39830, CVE-2026-39831, CVE-2026-39832, CVE-2026-39833, CVE-2026-39834, CVE-2026-39835, CVE-2026-42508, CVE-2026-46595, CVE-2026-46597, CVE-2026-46598; the API labels exploitation information as **Public**. The API currently lists affected products as: Astra Control Center; NetApp Console Agent Container (tp-proxy); Trident Protect; Trident Protect Connector.

Open source
Advisory

CVE-2026-9076 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0008/

NetApp published this interim advisory covering CVE-2026-9076; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-7383 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0003/

NetApp published this interim advisory covering CVE-2026-7383; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-45447 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0002/

NetApp published this interim advisory covering CVE-2026-45447; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-45446 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0016/

NetApp published this interim advisory covering CVE-2026-45446; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-45445 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0007/

NetApp published this interim advisory covering CVE-2026-45445; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-42771 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0011/

NetApp published this interim advisory covering CVE-2026-42771; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-42770 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0018/

NetApp published this interim advisory covering CVE-2026-42770; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; FAS/AFF Baseboard Management Controller (BMC) - 8300/8700/A400/C400; Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-42769 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0014/

NetApp published this interim advisory covering CVE-2026-42769; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-42768 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0017/

NetApp published this interim advisory covering CVE-2026-42768; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-42767 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0012/

NetApp published this interim advisory covering CVE-2026-42767; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-42766 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0013/

NetApp published this interim advisory covering CVE-2026-42766; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-42765 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0005/

NetApp published this interim advisory covering CVE-2026-42765; the API labels exploitation information as **Public**. The API currently lists affected products as: Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-42764 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0004/

NetApp published this interim advisory covering CVE-2026-42764; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (cbs-backend); ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-35188 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0015/

NetApp published this interim advisory covering CVE-2026-35188; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-34183 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0006/

NetApp published this interim advisory covering CVE-2026-34183; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-34182 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0001/

NetApp published this interim advisory covering CVE-2026-34182; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-34181 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0010/

NetApp published this interim advisory covering CVE-2026-34181; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs); NetApp Console Agent Container (cbs-backend); ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-34180 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260617-0009/

NetApp published this interim advisory covering CVE-2026-34180; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for VMware vSphere; Management Services for Element Software and NetApp HCI; NetApp Console Agent Container (adc); NetApp Console Agent Container (cbs-backend); NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-6238 GNU C Library (glibc) Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0002/

NetApp published this interim advisory covering CVE-2026-6238; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

CVE-2026-39882 OpenTelemetry-Go Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0009/

NetApp published this interim advisory covering CVE-2026-39882; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-39824 Golang.Org/X/Sys Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0007/

NetApp published this final advisory covering CVE-2026-39824; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-33814 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0006/

NetApp published this interim advisory covering CVE-2026-33814; the API labels exploitation information as **Public**. The API currently lists affected products as: Astra Control Center; Trident Protect.

Open source
Advisory

CVE-2026-3184 Util-linux Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0011/

NetApp published this interim advisory covering CVE-2026-3184; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2026-27456 Util-linux Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0012/

NetApp published this interim advisory covering CVE-2026-27456; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2025-58187 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0003/

NetApp published this interim advisory covering CVE-2025-58187; the API labels exploitation information as **Public**. The API currently lists affected products as: Astra Control Center; NetApp Console Agent; ONTAP tools for VMware vSphere 10.

Open source
Advisory

CVE-2021-35939 rpm Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0016/

NetApp published this interim advisory covering CVE-2021-35939; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2021-35938 rpm Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0017/

NetApp published this interim advisory covering CVE-2021-35938; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2021-35937 rpm Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0015/

NetApp published this interim advisory covering CVE-2021-35937; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2021-3521 rpm Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0018/

NetApp published this interim advisory covering CVE-2021-3521; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2021-3421 rpm Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0020/

NetApp published this interim advisory covering CVE-2021-3421; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2021-20266 rpm Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0019/

NetApp published this interim advisory covering CVE-2021-20266; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2017-7501 rpm Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0014/

NetApp published this interim advisory covering CVE-2017-7501; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2017-7500 rpm Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260612-0013/

NetApp published this interim advisory covering CVE-2017-7500; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

June 2026 Apache HTTP Server Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260610-0001/

NetApp published this interim advisory covering CVE-2026-29167, CVE-2026-34356, CVE-2026-42536, CVE-2026-43951, CVE-2026-44185, CVE-2026-44186, CVE-2026-44631, CVE-2026-34355, CVE-2026-44119; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP 9.

Open source
Advisory

CVE-2026-48913 Apache HTTP Server Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260610-0004/

NetApp published this interim advisory covering CVE-2026-48913; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-42535 Apache HTTP Server Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260610-0002/

NetApp published this interim advisory covering CVE-2026-42535; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-34003 X.Org Server Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260610-0010/

NetApp published this interim advisory covering CVE-2026-34003; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-34002 X.Org Server Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260610-0007/

NetApp published this interim advisory covering CVE-2026-34002; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-34001 X.Org Server Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260610-0009/

NetApp published this interim advisory covering CVE-2026-34001; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-34000 X.Org Server Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260610-0006/

NetApp published this interim advisory covering CVE-2026-34000; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-33999 X.Org Server Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260610-0008/

NetApp published this interim advisory covering CVE-2026-33999; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-29170 Apache HTTP Server Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260610-0005/

NetApp published this interim advisory covering CVE-2026-29170; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-48710 Starlette Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0011/

NetApp published this interim advisory covering CVE-2026-48710; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-43501 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0015/

NetApp published this interim advisory covering CVE-2026-43501; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-42790 Erlang/OTP Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0010/

NetApp published this interim advisory covering CVE-2026-42790; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP Select Deploy administration utility; SnapCenter.

Open source
Advisory

CVE-2026-40977 Spring Boot Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0009/

NetApp published this interim advisory covering CVE-2026-40977; the API labels exploitation information as **Public**. The API currently lists affected products as: Data Infrastructure Insights and Data Secure Storage Workload Security Agent.

Open source
Advisory

CVE-2026-35554 Apache Kafka Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0008/

NetApp published this interim advisory covering CVE-2026-35554; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-31607 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0014/

NetApp published this interim advisory covering CVE-2026-31607; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-24281 Apache Zookeeper Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0007/

NetApp published this interim advisory covering CVE-2026-24281; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-7345 GDK-Pixbuf Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0006/

NetApp published this final advisory covering CVE-2025-7345; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2025-41244 VMware Tools Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0005/

NetApp published this interim advisory covering CVE-2025-41244; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-15284 Qs Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0004/

NetApp published this interim advisory covering CVE-2025-15284; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-14512 GLib Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0003/

NetApp published this interim advisory covering CVE-2025-14512; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2025-14087 GLib Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0002/

NetApp published this interim advisory covering CVE-2025-14087; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2024-57699 Json-smart Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0001/

NetApp published this final advisory covering CVE-2024-57699; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

April 2026 Spring Boot Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260605-0013/

NetApp published this interim advisory covering CVE-2026-40972, CVE-2026-40973, CVE-2026-40974, CVE-2026-40975; the API labels exploitation information as **Public**. The API currently lists affected products as: OnCommand Insight.

Open source
Advisory

May 2026 Apache Tomcat Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0014/

NetApp published this interim advisory covering CVE-2026-41284, CVE-2026-41293, CVE-2026-43512, CVE-2026-43513, CVE-2026-43514, CVE-2026-43515; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-6938 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0009/

NetApp published this final advisory covering CVE-2026-6938; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-6053 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0011/

NetApp published this final advisory covering CVE-2026-6053; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-6052 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0008/

NetApp published this final advisory covering CVE-2026-6052; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-6051 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0012/

NetApp published this final advisory covering CVE-2026-6051; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-5950 ISC BIND Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0006/

NetApp published this interim advisory covering CVE-2026-5950; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2026-5947 ISC BIND Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0003/

NetApp published this interim advisory covering CVE-2026-5947; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-5946 ISC BIND Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0002/

NetApp published this interim advisory covering CVE-2026-5946; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; ONTAP 9.

Open source
Advisory

CVE-2026-44578 Next.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0013/

NetApp published this interim advisory covering CVE-2026-44578; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-3593 ISC BIND Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0004/

NetApp published this interim advisory covering CVE-2026-3593; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-3592 ISC BIND Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0005/

NetApp published this interim advisory covering CVE-2026-3592; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2026-3039 ISC BIND Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0001/

NetApp published this interim advisory covering CVE-2026-3039; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2026-1718 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0007/

NetApp published this final advisory covering CVE-2026-1718; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-13755 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0010/

NetApp published this final advisory covering CVE-2025-13755; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

April 2026 Apache Thrift Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260529-0015/

NetApp published this interim advisory covering CVE-2025-48431, CVE-2026-41602, CVE-2026-41603, CVE-2026-41604, CVE-2026-41605, CVE-2026-41606, CVE-2026-41607, CVE-2026-41636, CVE-2026-43868, CVE-2026-43869, CVE-2026-43870; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-45255 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260527-0011/

NetApp published this final advisory covering CVE-2026-45255; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-45254 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260527-0012/

NetApp published this final advisory covering CVE-2026-45254; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source