May 2026 Golang Crypto Vulnerabilities in NetApp Products
Summary
Golang Crypto versions prior to 0.52.0 are susceptible to vulnerabilities which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). Affected products: Astra Control Center, NetApp Console Agent Container (tp-proxy), Trident Protect, Trident Protect Connector. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.
What this means
In plain English
Golang Crypto versions prior to 0.52.0 are susceptible to vulnerabilities which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). Affected products: Astra Control Center, NetApp Console Agent Container (tp-proxy), Trident Protect, Trident Protect Connector. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time. Information disclosure can expose data available to the affected component beyond its intended authorization boundary.
Recommended action
Primary action: update to a vendor-listed fixed release: NetApp Console Agent Container (tp-proxy): 26.06, Trident Protect: 26.06, Trident Protect Connector: 26.06. Vendor mitigation: Update affected NetApp products to a fixed release: NetApp Console Agent Container (tp-proxy): 26.06, Trident Protect: 26.06, Trident Protect Connector: 26.06. Astra Control Center has no planned fix; migrate to a supported release or product and consult NetApp's end-of-support notice. NetApp Console Agent Container (tp-proxy): Fixed in 26.06. Trident Protect: Fixed in 26.06. Trident Protect Connector: Fixed in 26.06.
Rewritten locally from the scraped official advisory data above; no generative API is used. The vendor advisory is authoritative.
- 0.52.0
Official advisory · high-confidence parse· fetched 1 day ago·verify at source
- NetApp Console Agent Container (tp-proxy): 26.06
- Trident Protect: 26.06
- Trident Protect Connector: 26.06
Official advisory · high-confidence parse· fetched 1 day ago·verify at source
Mitigation checklist
- Update affected NetApp products to a fixed release: NetApp Console Agent Container (tp-proxy): 26.06, Trident Protect: 26.06, Trident Protect Connector: 26.06.
- Astra Control Center has no planned fix; migrate to a supported release or product and consult NetApp's end-of-support notice.
- NetApp Console Agent Container (tp-proxy): Fixed in 26.06.
- Trident Protect: Fixed in 26.06.
- Trident Protect Connector: Fixed in 26.06.
Official advisory · high-confidence parse· fetched 1 day ago·verify at source
Discussion(0)
No comments yet. Share field notes, upgrade gotchas, or questions — verify against the vendor advisory before acting on community advice.
Sign in to join the discussion.