Latest security coverage

Newest advisories and security-relevant NetApp analysis, newest first.

Auto-generated from the content index · 6 items · newest 2026-10-09

Advisory · Security

September 2026 FreeBSD jail Vulnerabilities in NetApp Products

CVE-2026-101304, CVE-2026-101305, CVE-2026-101306 — Successful exploitation of these vulnerabilities could lead to disclosure of sensitive information or addition or modification of data.

· NetApp Security Advisory

Advisory · Security

CVE-2026-58098 FreeBSD Vulnerability in NetApp Products

CVE-2026-58098 — Successful exploitation of this vulnerability could lead to disclosure of sensitive information, addition or modification of data or Denial of Service (DoS).

· NetApp Security Advisory

Home / Security Hub

NetApp ONTAP Security Hub

A living, machine-compiled index of NetApp security advisories, ONTAP-relevant CVEs, and known-exploited vulnerabilities — pulled automatically from official sources so you can check "is my cluster affected?" fast.

Not the source of truth. Data is summarized from security.netapp.com, the NVD, and CISA KEV. Always open the linked official advisory before acting.
4,521
NetApp advisories
1,832
ONTAP-relevant
8,510
CVEs indexed
0
On CISA KEV

What changed recently

166 advisories published and 607 updated in the last 21 days. Latest publication: 2026-10-09.

Latest ONTAP advisories

AdvisoryPublishedSeverityAffected productStatusFixCVEs
NTAP-20261009-00242026-10-09—ONTAP 9InteriminterimCVE-2026-101304, CVE-2026-101305, CVE-2026-101306
NTAP-20261009-00222026-10-09—ONTAP 9InteriminterimCVE-2026-58098
NTAP-20261009-00172026-10-09HIGH 7.5ONTAP Select Deploy administration utility, SnapCenter Plug-in for VMwInteriminterimCVE-2026-55952
NTAP-20261009-00182026-10-09HIGH 7.5ONTAP Select Deploy administration utility, ONTAP tools for VMware vSpInteriminterimCVE-2026-55737
NTAP-20261009-00192026-10-09—ONTAP 9InteriminterimCVE-2026-101302
NTAP-20261009-00162026-10-09HIGH 7.5ONTAP Select Deploy administration utility, SnapCenter, SnapCenter PluInteriminterimCVE-2026-59251
NTAP-20261009-00202026-10-09HIGH 8.2ONTAP 9InteriminterimCVE-2026-84782
NTAP-20261009-00212026-10-09—ONTAP 9InteriminterimCVE-2026-58099, CVE-2026-58100
NTAP-20261009-00232026-10-09—ONTAP 9InteriminterimCVE-2026-101303
NTAP-20261007-00132026-10-07HIGH 7.5Brocade Fabric Operating System Firmware, ONTAP 9InteriminterimCVE-2026-63292

All 4,521 advisories have detail pages (1,832 ONTAP-relevant, 2,689 for other NetApp products) — browse them by product family, through the CVE index, or in the rolling digest.

Latest ONTAP-relevant CVEs

CVEPublishedSeverityCVSSSummary
CVE-2026-220612026-10-09HIGH8.2Trident versions v25.02.1 through v26.06.1 are susceptible to a vulnerability that could allow an authenticate
CVE-2026-935462026-10-01HIGH8.8Integer overflow in mod_dav_fs in Apache HTTP Server through 2.4.68 allows an authenticated WebDAV client with
CVE-2026-797682026-10-01MEDIUM5.3Path equivalence: '/./' (single dot directory) vulnerability in Apache HTTP Server's mod_userdir module when c
CVE-2026-736372026-10-01HIGH7.3Use after free in mod_auth_digest in Apache Software Foundation Apache HTTP Server before 2.4.69 on all platfo
CVE-2026-736362026-10-01HIGH8.1Authentication bypass by capture-replay in mod_auth_digest in Apache Software Foundation Apache HTTP Server 2.
CVE-2026-637182026-10-01HIGH7.5Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling') response smuggling vulnerabil
CVE-2026-636862026-10-01HIGH7.5A NULL pointer dereference in mod_xml2enc in Apache Software Foundation Apache HTTP Server before 2.4.69 on al
CVE-2026-632922026-10-01HIGH7.5Stack-based buffer overflow in mod_vhost_alias in Apache Software Foundation Apache HTTP Server through 2.4.68
CVE-2026-630452026-10-01HIGH7.5Improper validation of FTP PASV reply address in mod_proxy_ftp in Apache Software Foundation Apache HTTP Serve
CVE-2026-597972026-10-01CRITICAL9.8Improper Privilege Management vulnerability in Apache HTTP Server's mod_ssl via SSLRequire and file-related ex

Browse the full CVE index (8510 CVEs) →

Known exploited (CISA KEV)

CVEAddedProductName
No NetApp products currently on the CISA KEV list.

Sources

Subscribe to the advisory RSS feed ↗

Generated 2026-10-10 · unofficial community resource.