Skip to content
VulniPulse
Medium6.7NetApp

Medium [CVE-2026-60526] Java Platform Standard Edition Vulnerability in NetApp Products

This medium-severity NetApp advisory covers CVE-2026-60526.

NTAP-20260724-0018 Published Jul 24, 2026Updated by vendor Jul 29, 2026
Affected products & platforms
NetAppUnclassified
Open vendor advisory

Android app · Google Play

Monitor future NetApp CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

Matching phone alertsOptional email delivery

Summary

Java SE versions 8u491 and 8u491-perf are susceptible to a vulnerability which when successfully exploited could allow a low privileged attacker with logon to the infrastructure where Oracle Java SE executes to compromise Oracle Java SE. Refer to “Oracle Critical Patch Update Advisory - July 2026” for additional details.

Successful attacks of this vulnerability can result in takeover of Oracle Java SE. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status.

Affected versions

No affected-version range was extracted from the source record. The vendor advisory is authoritative — check it before change work.

Official advisory · high-confidence parse· fetched 2 months ago·verify at source

Fixed versions

No fixed release is recorded yet. That does not prove no patch exists — confirm against the vendor advisory.

Official advisory · high-confidence parse· fetched 2 months ago·verify at source

Mitigation checklist

Recommended fix / mitigation
  • Refer to “Oracle Critical Patch Update Advisory - July 2026” for additional details.
Temporary workarounds
  • <p> If a product requires JRE but does not include it, please update JRE to a fixed version that aligns with the product requirements. <br><br> <a href="https://kb.netapp.com/Advice_and_Troubleshooting/Data_Infrastructure_Management/E-Series_SANtricity_Management_Software/How_to_update_the_Java_Runtime_Environment_(JRE)__Storage_Manager_11.10_or_later" target="_blank">Updating the Java Runtime Environment (JRE) used by SANtricity Storage Manager 11.10 or later </a> <br><br> In Full Support versions of Active IQ Unified Manager for Linux & Windows the Java software can be upgraded as specified in the product documentation. For assistance with upgrade issues please consult technical support. <br><br> In Full Support versions of OnCommand Insight the Java software can be upgraded. For assistance with the upgrade and access to the updated OnCommand Insight binaries please consult technical support. <br><br> </p>

Official advisory · high-confidence parse· fetched 2 months ago·verify at source

Discussion(0)

No comments yet. Share field notes, upgrade gotchas, or questions — verify against the vendor advisory before acting on community advice.

Sign in to join the discussion.