CVE-2026-22050: Medium severity NetApp Ontap vulnerability
Published Jan 12, 2026
·Updated
ONTAP versions 9.16.1 prior to 9.16.1P9 and 9.17.1 prior to 9.17.1P2 with snapshot locking enabled are susceptible to a vulnerability which could allow a privileged remote attacker to set the snapshot expiry time to none.
Affected Software
12 affected components
NetApp Ontap<9.16.1P9, <9.17.1P2
NetApp Ontap=9.16.1
NetApp Ontap=9.16.1-p1
NetApp Ontap=9.16.1-p2
NetApp Ontap=9.16.1-p3
NetApp Ontap=9.16.1-p4
NetApp Ontap=9.16.1-p5
NetApp Ontap=9.16.1-p6
NetApp Ontap=9.16.1-p7
NetApp Ontap=9.16.1-p8
NetApp Ontap=9.17.1
NetApp Ontap=9.17.1-p1
Event History
Jan 12, 2026
CVE Published
via MITRE·05:15 PM
Data Sourced
via MITRE·05:15 PM
DescriptionWeakness
Data Sourced
via NVD·06:15 PM
DescriptionSeverityWeaknessAffected Software
Feb 19, 58052
Event
via FIRST·06:26 PM
Frequently Asked Questions
1
What is the severity of CVE-2026-22050?
CVE-2026-22050 is classified as a high severity vulnerability due to its potential for exploitation by privileged remote attackers.
2
How do I fix CVE-2026-22050?
To fix CVE-2026-22050, upgrade your ONTAP versions to 9.16.1P9 or 9.17.1P2 or later.
3
What versions are affected by CVE-2026-22050?
CVE-2026-22050 affects ONTAP versions 9.16.1 prior to 9.16.1P9 and 9.17.1 prior to 9.17.1P2.
4
What type of vulnerability is CVE-2026-22050?
CVE-2026-22050 is a vulnerability related to snapshot locking that allows an attacker to manipulate snapshot expiry settings.
5
Who can exploit CVE-2026-22050?
CVE-2026-22050 can be exploited by a privileged remote attacker with access to the ONTAP system.