NetApp SnapCenter Vulnerabilities & Security Advisories
6 advisories tracked · NetApp Product Security Advisories (PSIRT) · 0 listed in the CISA Known Exploited Vulnerabilities catalog
Every row below is a published NetApp advisory that VulniPulse classified as SnapCenter, with the CVEs, affected and fixed releases and exploitation status the vendor stated. Severity mix: 2 critical, 3 high, 1 medium.
Android app · Google Play
Monitor NetApp CVEs from your phone.
Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.
Source
NetApp Product Security Advisories (PSIRT)
Polled through NetApp Product Security's official advisory API. It supplies the canonical NTAP advisory ID, NetApp-calculated CVSS, affected and investigating products, remediation releases, workarounds and revision dates without relying on a third-party keyword search.
Latest NetApp SnapCenter advisories
High [CVE-2026-45591] ASP.NET Core Vulnerability in NetApp Products
ASP.NET Core versions through 8.0.27, 9 through 9.0.16 and 10 through 10.0.8 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS). Successful exploitation of this vulnerability could lead to Denial of Service (DoS). Affected products: SnapCenter. NetApp states there is no workaround available at this time.
High [CVE-2026-46863] MySQL Server Vulnerability in NetApp Products
Multiple NetApp products incorporate MySQL Server. MySQL Server versions 8.4.0 through 8.4.9 and 9.0.0 through 9.7.0 are susceptible to a vulnerability which when successfully exploited could allow an unauthenticated attacker with network access via multiple protocols to compromise MySQL Server. Refer to Oracle Critical Security Patch Update Advisory - June 2026” for additional details. Successful attacks of this vulnerability can result in an unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. Affected products: Active IQ Unified Manager for Microsoft Windows, Active IQ Unified Manager for VMware vSphere, SnapCenter. NetApp reports that one or more additional products remain under investigation; review the canonical advisory for current status.
High [CVE-2025-9230 +6] January 2026 MySQL Server Vulnerabilities in NetApp Products
Multiple NetApp products incorporate MySQL. MySQL versions 8.0.0 through 8.0.44, 8.4.0 through 8.4.7, and 9.0.0 through 9.5.0 are susceptible to a vulnerability that could allow unauthenticated, high and low privileged attackers with network access via multiple protocols to compromise MySQL Server. Refer to “Oracle Critical Patch Update Advisory - January 2026” for additional details. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. Affected products: Active IQ Unified Manager for Microsoft Windows, Active IQ Unified Manager for VMware vSphere, OnCommand Insight, SnapCenter.