Where
-Infinity
0

Vendor Risk Score

See how netapp compares to other vendors in security performance

View Risk Score →

Software

netapp oncommand insight
959
netapp oncommand workflow automation
732
netapp snapcenter
586
netapp active iq unified manager for vmware vsphere
416
netapp active iq unified manager
403
netapp cloud backup
343
netapp active iq unified manager vmware vsphere
329
netapp h700s
314
netapp h410s
309
netapp h300s firmware
292
netapp h410s firmware
292
netapp h410c
248
netapp h500s firmware
245
netapp e-series santricity os controller
240
netapp h410c firmware
239
netapp active iq unified manager windows
232
netapp steelstore cloud integrated storage
209
netapp h500e firmware
197
netapp h500s
193
netapp h300s
191
netapp solidfire
176
netapp h700s firmware
172
netapp h700e
150
netapp hci compute node
150
netapp h300e
149
netapp h300e firmware
148
netapp hci management node
113
netapp storage automation store
113
netapp solidfire & hci management node
107
netapp ontap select deploy administration utility
104
netapp oncommand unified manager for windows
103
netapp clustered data ontap
100
netapp snapmanager for oracle
87
netapp snapmanager for sap
87
netapp management services for element software
85
netapp santricity storage manager
85
netapp ontap select deploy
82
netapp snapmanager sap
82
netapp oncommand unified manager for vsphere
81
netapp snapmanager oracle
81
netapp oncommand balance
80
netapp solidfire & hci storage node
79
netapp h500e
77
netapp h700e firmware
76
netapp 7-mode transition tool
75
netapp solidfire baseboard management controller firmware
70
netapp plug-in for symantec netbackup
67
netapp oncommand performance manager
66
netapp active iq unified manager linux
64
netapp solidfire \& hci management node
64

NetApp OntapONTAP versions 9.16.1 and higher with WebAuthn multi-factor authentication (MFA) configured are susc…

Risk 79
Severity
8.7
First published (updated )

NetApp Active IQ OneCollectActive IQ OneCollect version 2.7.3 contains hard-coded credentials that could allow an authenticated…

Risk 79
Severity
5.3
First published (updated )

NetApp Active IQ Config AdvisorActive IQ Config Advisor version 6.7.3 contains hard-coded credentials that could allow an authentic…

Risk 79
Severity
5.3
First published (updated )

NetApp StoragegridInfoleak

Risk 22
Severity
2.3
First published (updated )

NetApp OntapONTAP versions 9.12.1 and higher with S3 NAS buckets are susceptible to an information disclosure vu…

Risk 26
Severity
5.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

NetApp StoragegridSSRF

Risk 48
Severity
7.1
First published (updated )

NetApp OntapONTAP versions 9.16.1 prior to 9.16.1P9 and 9.17.1 prior to 9.17.1P2 with snapshot locking enabled a…

Risk 27
Severity
6.9
EPSS
0.04%
First published (updated )

NetApp StoragegridPrivilege Escalation Vulnerability in StorageGRID (formerly StorageGRID Webscale)

Risk 34
Severity
5.4
First published (updated )

NetApp StoragegridDenial of Service Vulnerability in StorageGRID (formerly StorageGRID Webscale)

Risk 27
Severity
5.3
First published (updated )

NetApp StoragegridServer-Side Request Forgery Vulnerability in StorageGRID (formerly StorageGRID Webscale)

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

NetApp StoragegridReflected Cross-Site Scripting Vulnerability in StorageGRID (formerly StorageGRID Webscale)

Risk 50
Severity
6.4
First published (updated )

SAN Host Utilities for WindowsThe installer for SAN Host Utilities for Windows versions prior to 8.0 is susceptible to a vulnerabi…

Risk 69
Severity
7.8
First published (updated )

Apache HttpClientApache HttpComponents: PSL (Public Suffix List) validation bypass

Risk 43
Severity
7.5
First published (updated )

Oracle MySQL ClientLast updated 5 May 2025

Risk 52
Severity
6.8
First published (updated )

Oracle GraalVM for JDKLast updated 6 May 2025

Risk 32
Severity
4.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Oracle MySQL ServerVulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versi…

Risk 30
Severity
4.9
First published (updated )

Apache POIApache POI: parsing OOXML based files (xlsx, docx, etc.), poi-ooxml could read unexpected data if underlying zip has duplicate zip entry names

Risk 20
Severity
5.3
EPSS
0.05%
First published (updated )

NetApp SnapcenterPrivilege Escalation Vulnerability in SnapCenter

Risk 59
Severity
9.9
EPSS
0.03%
First published (updated )

vim VimVim vulnerable to potential data loss with zip.vim and special crafted zip files

Risk 21
Severity
4.4
EPSS
0.04%
First published (updated )

PHP PHPStream HTTP wrapper header check might omit basic auth header

Risk 51
Severity
7.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

PHP PHPStreams HTTP wrapper does not fail for headers with invalid name and no colon

Risk 27
Severity
6.3
First published (updated )

PHP PHPStream HTTP wrapper truncates redirect location to 1024 bytes

Risk 86
Severity
9.8
First published (updated )

OmniAuth Omniauth Saml RubyGHSL-2024-329_GHSL-2024-330: Authentication bypasses in ruby-saml - CVE-2025-25291, CVE-2025-25292

Risk 63
Severity
9.8
EPSS
0.44%
First published (updated )

OmniAuth Omniauth Saml RubyGHSL-2024-329_GHSL-2024-330: Authentication bypasses in ruby-saml - CVE-2025-25291, CVE-2025-25292

Risk 63
Severity
9.8
EPSS
0.51%
First published (updated )

AMI Megarac Sp-xAMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability

Risk 100
Severity
10
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache TomcatApache Tomcat Path Equivalence Vulnerability

Risk 90
Severity
10
EPSS
0.04%
First published (updated )

vim VimImproper Input Validation in Vim

Risk 38
Severity
7.1
EPSS
0.06%
First published (updated )

vim Vimheap-use-after-free in function str_to_reg in vim/vim

Risk 25
Severity
4.2
EPSS
0.02%
First published (updated )

Apple iPadOSUse After Free, Buffer Overflow, Input Validation, Null Pointer Dereference, Integer Overflow

Risk 93
Severity
9.8
First published (updated )

Xmlsoft Libxml2Buffer Overflow

Risk 44
Severity
7.8
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203