Skip to content
VulniPulse

Complete feed

No mitigation yet

No fix, workaround or mitigation extracted yet

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

High8.8NetApp Exploited CISA KEV

High [CVE-2026-34197] Apache ActiveMQ Vulnerability in NetApp Products

Multiple NetApp products incorporate Apache ActiveMQ. Apache ActiveMQ versions prior to 5.19.4 and 6.0.0 prior to 6.2.3 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). NetApp states there is no workaround available at this time.

CVE-2026-34197
Unclassified
Apr 17, 2026
High7.5NetApp

High [CVE-2026-32597] PyJWT Vulnerability in NetApp Products

Multiple NetApp products incorporate PyJWT. PyJWT versions prior to 2.12.0 are susceptible to a vulnerability which when successfully exploited could lead to addition or modification of data. Successful exploitation of this vulnerability could lead to addition or modification of data. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-32597
Unclassified
Apr 17, 2026
Medium4.2NetApp

Medium [CVE-2026-35414] OpenSSH Vulnerability in NetApp Products

Multiple NetApp products incorporate OpenSSH. OpenSSH versions prior to 10.3 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information addition or modification of data. Affected products: ONTAP Select Deploy administration utility. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-35414
ONTAPONTAP Select
Apr 17, 2026
Critical9.8NetApp

Critical [CVE-2026-33937] Handlebars.js Vulnerability in NetApp Products

Multiple NetApp products incorporate Handlebars.js. Handlebars.js versions 4.0.0 through 4.7.8 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-33937
Unclassified
Apr 10, 2026
High7.0NetApp

High [CVE-2026-4519] Python Vulnerability in NetApp Products

Multiple NetApp products incorporate Python. Certain versions of Python are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information or addition or modification of data. Affected products: Active IQ Unified Manager for Microsoft Windows, Active IQ Unified Manager for VMware vSphere. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-4519
Active IQ Unified Manager
Apr 10, 2026
High7.5NetApp

High [CVE-2026-33939] Handlebars.js Vulnerability in NetApp Products

Multiple NetApp products incorporate Handlebars.js. Handlebars.js versions 4.0.0 through 4.7.8 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-33939
Unclassified
Apr 10, 2026
High7.5NetApp

High [CVE-2026-21710] Node.js Vulnerability in NetApp Products

Multiple NetApp products incorporate Node.js. All Node.js HTTP servers on 20.x, 22.x, 24.x, and 25.x are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-21710
Unclassified
Apr 10, 2026
Medium6.0NetApp

Medium [CVE-2026-3644] Python Vulnerability in NetApp Products

Multiple NetApp products incorporate Python. Certain versions of Python are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information or addition or modification of data. Affected products: Active IQ Unified Manager for Microsoft Windows, Active IQ Unified Manager for VMware vSphere, Management Services for Element Software and NetApp HCI. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-3644
Element SoftwareActive IQ Unified Manager
Apr 10, 2026
Medium5.3NetApp

Medium [CVE-2026-21714] Node.js Vulnerability in NetApp Products

Multiple NetApp products incorporate Node.js. Node.js versions 20.x, 22.x, 24.x, and 25.x are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-21714
Unclassified
Apr 10, 2026
High7.5NetApp

High [CVE-2026-1519] ISC BIND Vulnerability in NetApp Products

Multiple NetApp products incorporate ISC BIND. ISC BIND versions 9.11.0 through 9.16.50, 9.18.0 through 9.18.46, 9.20.0 through 9.20.20, and 9.21.0 through 9.21.19 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp states there is no workaround available at this time.

CVE-2026-1519
Unclassified
Apr 3, 2026
Medium4.2NetApp

Medium [CVE-2026-1484] GLib Vulnerability in NetApp Products

Multiple NetApp products incorporate GLib. GLib versions 2.87.0 through 2.87.3 are susceptible to a vulnerability which when successfully exploited could lead to addition or modification of data or Denial of Service (DoS). Affected products: Active IQ Unified Manager for VMware vSphere. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-1484
Active IQ Unified Manager
Mar 20, 2026
Low2.8NetApp

Low [CVE-2026-1485] GLib Vulnerability in NetApp Products

Multiple NetApp products incorporate GLib. GLib versions through 2.86.3 and 2.87.0 through 2.87.2 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-1485
Unclassified
Mar 20, 2026
High7.5NetApp

High [CVE-2025-68372] Linux Kernel Vulnerability in NetApp Products

Multiple NetApp products incorporate Linux kernel. Certain versions of Linux kernel are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). Affected products: AFF/ASA/FAS Baseboard Management Controller (BMC) - A1K/A90/A70/C80/FAS90/FAS70, AFF/ASA/FAS Baseboard Management Controller (BMC) - A50/A30/A20/C60/C30/FAS50, Active IQ Unified Manager for VMware vSphere. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2025-68372
AFF / ASA / FASActive IQ Unified Manager
Mar 13, 2026
High7.5NetApp

High [CVE-2026-21637] Node.js Vulnerability in NetApp Products

Multiple NetApp products incorporate Node.js. Certain versions of Node.js are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-21637
Unclassified
Mar 13, 2026
High8.5NetApp

High [CVE-2026-22610] Angular Vulnerability in NetApp Products

Multiple NetApp products incorporate Angular. Angular versions prior to 19.2.18, 20.3.16, 21.0.7, and 21.1.0-rc.0 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). Affected products: Active IQ Unified Manager for Linux, Active IQ Unified Manager for Microsoft Windows, Active IQ Unified Manager for VMware vSphere. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-22610
Active IQ Unified Manager
Mar 11, 2026
High8.2NetApp

High [CVE-2026-26007] pyca/cryptography Vulnerability in NetApp Products

Multiple NetApp products incorporate pyca/cryptography. Cryptography versions prior to 46.0.5 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information. Successful exploitation of this vulnerability could lead to disclosure of sensitive information. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-26007
Unclassified
Mar 11, 2026
High7.8NetApp

High [CVE-2026-23001] Linux Kernel Vulnerability in NetApp Products

Multiple NetApp products incorporate Linux kernel. Certain versions of Linux kernel are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information, addition or modification of data, or Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-23001
Unclassified
Mar 5, 2026
Medium6.8NetApp

Medium [CVE-2025-37731] Elasticsearch Vulnerability in NetApp Products

Multiple NetApp products incorporate Elasticsearch. Elasticsearch versions 7.0.0 through 7.17.29, 8.0.0 through 8.19.7, 9.0.0 through 9.1.7, and 9.2.0 through 9.2.1 are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information or addition or modification of data. NetApp states there is no workaround available at this time.

CVE-2025-37731
Unclassified
Mar 5, 2026
Medium5.5NetApp

Medium [CVE-2026-22988] Linux Kernel Vulnerability in NetApp Products

Multiple NetApp products incorporate Linux kernel. Certain versions of Linux Kernel are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-22988
Unclassified
Mar 5, 2026
Medium5.3NetApp

Medium [CVE-2026-24733] Apache Tomcat Vulnerability in NetApp Products

Multiple NetApp products incorporate Apache Tomcat. Certain versions of Apache Tomcat are susceptible to a vulnerability which when successfully exploited could lead to disclosure of sensitive information. Successful exploitation of this vulnerability could lead to disclosure of sensitive information. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status. NetApp states there is no workaround available at this time.

CVE-2026-24733
Unclassified
Feb 27, 2026