Content Library · Advisory

Advisory 2026

Browse 895 2026 NetApp advisory records in the NetApp Black Box content library. Page 6 of 8.

Library JSON API

Showing all 120 items on this page

Advisory

CVE-2026-25679 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0007/

NetApp published this interim advisory covering CVE-2026-25679; the API labels exploitation information as **Public**. The API currently lists affected products as: Astra Control Center; Astra Control Center - NetApp Kubernetes Monitoring Operator; NetApp Kubernetes Monitoring Operator; ONTAP tools for VMware vSphere 10; Trident; Trident Protect.

Open source
Advisory

CVE-2026-1577 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0009/

NetApp published this final advisory covering CVE-2026-1577; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-1352 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0014/

NetApp published this final advisory covering CVE-2026-1352; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-68161 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0013/

NetApp published this final advisory covering CVE-2025-68161; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-67735 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0011/

NetApp published this final advisory covering CVE-2025-67735; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-66168 Apache ActiveMQ Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0001/

NetApp published this final advisory covering CVE-2025-66168; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-64118 Node-tar Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0019/

NetApp published this interim advisory covering CVE-2025-64118; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp Console Agent Container (cbs_catalog); NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

CVE-2025-55315 ASP.NET Core Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0020/

NetApp published this final advisory covering CVE-2025-55315; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-36122 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0012/

NetApp published this final advisory covering CVE-2025-36122; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-14688 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0015/

NetApp published this final advisory covering CVE-2025-14688; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-12183 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0010/

NetApp published this final advisory covering CVE-2025-12183; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2024-58251 BusyBox Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260422-0016/

NetApp published this interim advisory covering CVE-2024-58251; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H300S/H500S/H700S/H410S; NetApp HCI Baseboard Management Controller (BMC) - H410C; NetApp HCI Baseboard Management Controller (BMC) - H610C; NetApp HCI Baseboard Management Controller (BMC) - H610S; NetApp HCI Baseboard Management Controller (BMC) - H615C; NetApp HCI Compute Node (Bootstrap OS).

Open source
Advisory

CVE-2026-4748 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260417-0006/

NetApp published this final advisory covering CVE-2026-4748; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-4652 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260417-0004/

NetApp published this final advisory covering CVE-2026-4652; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-4426 Libarchive Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260417-0007/

NetApp published this interim advisory covering CVE-2026-4426; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp LOADER 8.x.

Open source
Advisory

CVE-2026-4247 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260417-0005/

NetApp published this final advisory covering CVE-2026-4247; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-35414 OpenSSH Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260417-0019/

NetApp published this interim advisory covering CVE-2026-35414; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-35385 OpenSSH Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260417-0018/

NetApp published this interim advisory covering CVE-2026-35385; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; ONTAP tools for VMware vSphere 10.

Open source
Advisory

CVE-2026-33227 Apache ActiveMQ Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260417-0002/

NetApp published this final advisory covering CVE-2026-33227; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-28386 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260417-0016/

NetApp published this interim advisory covering CVE-2026-28386; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

CVE-2025-65945 Auth0/node-jws Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260417-0009/

NetApp published this interim advisory covering CVE-2025-65945; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

April 2026 Axios Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260417-0020/

NetApp published this interim advisory covering CVE-2025-62718, CVE-2026-40175; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp Shift Toolkit; Storage Manager for ProxMox.

Open source
Advisory

March 2026 GNU C Library (glibc) Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260410-0017/

NetApp published this interim advisory covering CVE-2026-4437, CVE-2026-4438; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; E-Series SANtricity OS Controller Software; NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

CVE-2026-4747 FreeBSD Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260410-0014/

NetApp published this final advisory covering CVE-2026-4747; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-33937 Handlebars.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260410-0005/

NetApp published this interim advisory covering CVE-2026-33937; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-21717 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260410-0011/

NetApp published this interim advisory covering CVE-2026-21717; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-21712 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260410-0010/

NetApp published this interim advisory covering CVE-2026-21712; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-1188 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260410-0015/

NetApp published this final advisory covering CVE-2026-1188; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-14505 Elliptic Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260410-0016/

NetApp published this interim advisory covering CVE-2025-14505; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for Microsoft Windows; Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2023-28842 Docker Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260410-0002/

NetApp published this interim advisory covering CVE-2023-28842; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-28841 Docker Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260410-0003/

NetApp published this interim advisory covering CVE-2023-28841; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2023-28840 Docker Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260410-0004/

NetApp published this interim advisory covering CVE-2023-28840; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP tools for VMware vSphere 10.

Open source
Advisory

Intel SA-01244 Processor Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0009/

NetApp published this interim advisory covering CVE-2025-20103, CVE-2025-20054; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-3591 ISC BIND Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0001/

NetApp published this interim advisory covering CVE-2026-3591; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-3260 Undertow Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0015/

NetApp published this final advisory covering CVE-2026-3260; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-3119 ISC BIND Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0002/

NetApp published this interim advisory covering CVE-2026-3119; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-3104 ISC BIND Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0004/

NetApp published this interim advisory covering CVE-2026-3104; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-1519 ISC BIND Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0003/

NetApp published this final advisory covering CVE-2026-1519; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-20100 Intel Processor Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0010/

NetApp published this interim advisory covering CVE-2025-20100; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-20044 Intel TDX Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0014/

NetApp published this interim advisory covering CVE-2025-20044; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-20004 Intel Processor Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0011/

NetApp published this interim advisory covering CVE-2025-20004; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2024-48869 Intel Processor Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0012/

NetApp published this interim advisory covering CVE-2024-48869; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2024-45332 Intel Processor Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0008/

NetApp published this interim advisory covering CVE-2024-45332; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2024-33607 Intel TDX Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0013/

NetApp published this interim advisory covering CVE-2024-33607; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2024-22365 Linux-Pam Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260403-0007/

NetApp published this interim advisory covering CVE-2024-22365; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-3805 Libcurl Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0001/

NetApp published this interim advisory covering CVE-2026-3805; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP 9; ONTAP tools for VMware vSphere 10.

Open source
Advisory

CVE-2026-3784 Libcurl Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0003/

NetApp published this interim advisory covering CVE-2026-3784; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP 9; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-3783 Libcurl Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0004/

NetApp published this interim advisory covering CVE-2026-3783; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP 9.

Open source
Advisory

CVE-2026-1965 Libcurl Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0002/

NetApp published this interim advisory covering CVE-2026-1965; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP 9; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2025-58060 CUPS Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0009/

NetApp published this final advisory covering CVE-2025-58060; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-57347 Node.js dagre-d3-es Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0008/

NetApp published this final advisory covering CVE-2025-57347; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-48795 Apache CXF Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0014/

NetApp published this interim advisory covering CVE-2025-48795; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; SnapCenter.

Open source
Advisory

CVE-2025-46394 BusyBox Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0010/

NetApp published this interim advisory covering CVE-2025-46394; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

CVE-2025-15224 Libcurl Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0005/

NetApp published this interim advisory covering CVE-2025-15224; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

CVE-2025-13034 Libcurl Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0006/

NetApp published this interim advisory covering CVE-2025-13034; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

CVE-2025-11234 QEMU Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0015/

NetApp published this final advisory covering CVE-2025-11234; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2021-22898 Libcurl Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260327-0007/

NetApp published this interim advisory covering CVE-2021-22898; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

December 2025 Node.js Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260320-0007/

NetApp published this final advisory covering CVE-2025-55130, CVE-2025-55132, CVE-2025-59465; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-27446 Apache ActiveMQ Artemis Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260320-0011/

NetApp published this final advisory covering CVE-2026-27446; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-2673 OpenSSL Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260320-0015/

NetApp published this interim advisory covering CVE-2026-2673; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2026-25749 Vim Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260320-0010/

NetApp published this interim advisory covering CVE-2026-25749; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-1489 Glib Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260320-0002/

NetApp published this interim advisory covering CVE-2026-1489; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-0988 GLib Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260320-0004/

NetApp published this interim advisory covering CVE-2026-0988; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2025-9714 Libxml2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260320-0006/

NetApp published this interim advisory covering CVE-2025-9714; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP 9; SnapManager for Hyper-V.

Open source
Advisory

CVE-2025-55131 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260320-0008/

NetApp published this final advisory covering CVE-2025-55131; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2024-43590 Visual Studio Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260320-0009/

NetApp published this final advisory covering CVE-2024-43590; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2022-41409 PCRE2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260320-0014/

NetApp published this interim advisory covering CVE-2022-41409; the API labels exploitation information as **Public**. The API currently lists affected products as: ONTAP tools for VMware vSphere 10.

Open source
Advisory

Intel SA-01315 Intel AMT Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260313-0015/

NetApp published this interim advisory covering CVE-2025-32008, CVE-2025-20080; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-1642 Nginx Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260313-0008/

NetApp published this interim advisory covering CVE-2026-1642; the API labels exploitation information as **Public**. The API currently lists affected products as: Management Services for Element Software and NetApp HCI.

Open source
Advisory

CVE-2026-0915 Glibc Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260313-0003/

NetApp published this interim advisory covering CVE-2026-0915; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2025-68372 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260313-0007/

NetApp published this interim advisory covering CVE-2025-68372; the API labels exploitation information as **Public**. The API currently lists affected products as: AFF/ASA/FAS Baseboard Management Controller (BMC) - A1K/A90/A70/C80/FAS90/FAS70; AFF/ASA/FAS Baseboard Management Controller (BMC) - A50/A30/A20/C60/C30/FAS50; Active IQ Unified Manager for VMware vSphere.

Open source
Advisory

CVE-2025-5702 Glibc Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260313-0002/

NetApp published this interim advisory covering CVE-2025-5702; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

CVE-2025-41117 Grafana Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260313-0006/

NetApp published this final advisory covering CVE-2025-41117; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-27708 Intel CSME Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260313-0013/

NetApp published this interim advisory covering CVE-2025-27708; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-15281 Glibc Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260313-0001/

NetApp published this interim advisory covering CVE-2025-15281; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for VMware vSphere; NetApp HCI Baseboard Management Controller (BMC) - H610S; ONTAP Select Deploy administration utility.

Open source
Advisory

CVE-2025-14104 Util-linux Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260313-0012/

NetApp published this interim advisory covering CVE-2025-14104; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-11413 GNU Binutils Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260313-0011/

NetApp published this interim advisory covering CVE-2025-11413; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

Intel SA-01397 Processor Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0003/

NetApp published this interim advisory covering CVE-2025-30513, CVE-2025-31944, CVE-2025-32007, CVE-2025-32467, CVE-2025-27572, CVE-2025-27940; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-27171 Zlib Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0015/

NetApp published this interim advisory covering CVE-2026-27171; the API labels exploitation information as **Public**. The API currently lists affected products as: Active IQ Unified Manager for Linux; Active IQ Unified Manager for Microsoft Windows; Management Services for Element Software and NetApp HCI; NetApp LOADER 8.x; Trident.

Open source
Advisory

CVE-2026-26278 Fast-xml-parser Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0007/

NetApp published this interim advisory covering CVE-2026-26278; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-25896 Fast-xml-parser Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0006/

NetApp published this interim advisory covering CVE-2026-25896; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-21636 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0014/

NetApp published this final advisory covering CVE-2026-21636; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-61726 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0009/

NetApp published this interim advisory covering CVE-2025-61726; the API labels exploitation information as **Public**. The API currently lists affected products as: Astra Control Center; NetApp Console Agent; ONTAP tools for VMware vSphere 10; Trident Protect.

Open source
Advisory

CVE-2025-59466 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0011/

NetApp published this final advisory covering CVE-2025-59466; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-59464 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0012/

NetApp published this final advisory covering CVE-2025-59464; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-58190 Golang Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0008/

NetApp published this interim advisory covering CVE-2025-58190; the API labels exploitation information as **Public**. The API currently lists affected products as: Astra Control Center; Trident Protect.

Open source
Advisory

CVE-2025-31648 Intel Processor Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0002/

NetApp published this interim advisory covering CVE-2025-31648; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-23166 Node.js Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0013/

NetApp published this final advisory covering CVE-2025-23166; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-22885 Intel TDX Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260311-0004/

NetApp published this interim advisory covering CVE-2025-22885; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

February 2026 Django Vulnerabilities in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0001/

NetApp published this final advisory covering CVE-2025-13473, CVE-2025-14550, CVE-2026-1207, CVE-2026-1285, CVE-2026-1287, CVE-2026-1312; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-26158 Busybox Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0007/

NetApp published this interim advisory covering CVE-2026-26158; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-26157 Busybox Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0006/

NetApp published this interim advisory covering CVE-2026-26157; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-23016 Linux Kernel Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0019/

NetApp published this interim advisory covering CVE-2026-23016; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-1225 Logback Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0008/

NetApp published this interim advisory covering CVE-2026-1225; the API labels exploitation information as **Public**. The API currently lists affected products as: Element Plug-in for vCenter Server; Management Services for Element Software and NetApp HCI; SnapCenter.

Open source
Advisory

CVE-2026-0865 Python Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0014/

NetApp published this interim advisory covering CVE-2026-0865; the API labels exploitation information as **Public**. The API currently lists affected products as: Management Services for Element Software and NetApp HCI.

Open source
Advisory

CVE-2025-9820 GnuTLS Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0016/

NetApp published this interim advisory covering CVE-2025-9820; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

CVE-2025-37731 Elasticsearch Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0005/

NetApp published this final advisory covering CVE-2025-37731; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-36428 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0004/

NetApp published this final advisory covering CVE-2025-36428; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-36353 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0003/

NetApp published this final advisory covering CVE-2025-36353; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-2534 IBM Db2 Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0002/

NetApp published this final advisory covering CVE-2025-2534; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-15367 Python Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0013/

NetApp published this interim advisory covering CVE-2025-15367; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-15366 Python Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0012/

NetApp published this interim advisory covering CVE-2025-15366; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-15282 Python Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0011/

NetApp published this interim advisory covering CVE-2025-15282; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-14831 GnuTLS Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0015/

NetApp published this interim advisory covering CVE-2025-14831; the API labels exploitation information as **Public**. The API currently lists affected products as: NetApp HCI Baseboard Management Controller (BMC) - H610S.

Open source
Advisory

CVE-2025-12781 Python Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0010/

NetApp published this interim advisory covering CVE-2025-12781; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2025-11468 Python Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260305-0009/

NetApp published this interim advisory covering CVE-2025-11468; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source
Advisory

CVE-2026-24734 Apache Tomcat Vulnerability in NetApp Products

Source: https://security.netapp.com/advisory/NTAP-20260227-0003/

NetApp published this final advisory covering CVE-2026-24734; the API labels exploitation information as **Public**. The API did not yet publish an affected-product list, so this record should not be read as confirmation that ONTAP is affected; recheck the official advisory as the interim analysis changes.

Open source