Where
-Infinity
0

Vendor Risk Score

See how netapp compares to other vendors in security performance

View Risk Score →

Software

netapp oncommand insight
960
netapp oncommand workflow automation
732
netapp snapcenter
586
netapp active iq unified manager for vmware vsphere
407
netapp active iq unified manager
393
netapp cloud backup
347
netapp active iq unified manager vmware vsphere
339
netapp h700s
316
netapp h410s
311
netapp h300s firmware
294
netapp h410s firmware
294
netapp h410c
250
netapp h500s firmware
249
netapp h410c firmware
241
netapp active iq unified manager windows
240
netapp e-series santricity os controller
240
netapp steelstore cloud integrated storage
209
netapp h500s
202
netapp h300s
200
netapp h500e firmware
195
netapp h700s firmware
181
netapp solidfire
175
netapp hci compute node
151
netapp h700e
150
netapp h300e
149
netapp h300e firmware
148
netapp hci management node
113
netapp storage automation store
113
netapp ontap select deploy administration utility
107
netapp clustered data ontap
105
netapp oncommand unified manager for windows
103
netapp solidfire & hci management node
102
netapp snapmanager for oracle
87
netapp snapmanager for sap
87
netapp management services for element software
85
netapp santricity storage manager
85
netapp h500e
82
netapp snapmanager sap
82
netapp h700e firmware
81
netapp oncommand unified manager for vsphere
81
netapp snapmanager oracle
81
netapp oncommand balance
80
netapp ontap select deploy
79
netapp solidfire & hci storage node
78
netapp 7-mode transition tool
75
netapp solidfire baseboard management controller firmware
71
netapp active iq unified manager linux
69
netapp solidfire \& hci management node
69
netapp plug-in for symantec netbackup
67
netapp oncommand performance manager
66

NetApp OntapONTAP versions 9.16.1 and higher with WebAuthn multi-factor authentication (MFA) configured are susc…

Risk 79
Severity
8.7
First published (updated )

NetApp Active IQ OneCollectActive IQ OneCollect version 2.7.3 contains hard-coded credentials that could allow an authenticated…

Risk 79
Severity
5.3
First published (updated )

NetApp Active IQ Config AdvisorActive IQ Config Advisor version 6.7.3 contains hard-coded credentials that could allow an authentic…

Risk 79
Severity
5.3
First published (updated )

NetApp StoragegridInfoleak

Risk 22
Severity
2.3
First published (updated )

NetApp OntapONTAP versions 9.12.1 and higher with S3 NAS buckets are susceptible to an information disclosure vu…

Risk 26
Severity
5.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

NetApp StoragegridSSRF

Risk 48
Severity
7.1
First published (updated )

NetApp OntapONTAP versions 9.16.1 prior to 9.16.1P9 and 9.17.1 prior to 9.17.1P2 with snapshot locking enabled a…

Risk 27
Severity
6.9
EPSS
0.04%
First published (updated )

NetApp StoragegridPrivilege Escalation Vulnerability in StorageGRID (formerly StorageGRID Webscale)

Risk 34
Severity
5.4
First published (updated )

NetApp StoragegridDenial of Service Vulnerability in StorageGRID (formerly StorageGRID Webscale)

Risk 27
Severity
5.3
First published (updated )

NetApp StoragegridServer-Side Request Forgery Vulnerability in StorageGRID (formerly StorageGRID Webscale)

Risk 43
Severity
7.5
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

NetApp StoragegridReflected Cross-Site Scripting Vulnerability in StorageGRID (formerly StorageGRID Webscale)

Risk 50
Severity
6.4
First published (updated )

SAN Host Utilities for WindowsThe installer for SAN Host Utilities for Windows versions prior to 8.0 is susceptible to a vulnerabi…

Risk 69
Severity
7.8
First published (updated )

Apache HttpClientApache HttpComponents: PSL (Public Suffix List) validation bypass

Risk 43
Severity
7.5
First published (updated )

Oracle MySQL ClientLast updated 5 May 2025

Risk 52
Severity
6.8
First published (updated )

Oracle GraalVM for JDKLast updated 6 May 2025

Risk 32
Severity
4.8
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Oracle MySQL ServerVulnerability in the MySQL Server product of Oracle MySQL (component: Server: DDL). Supported versi…

Risk 30
Severity
4.9
First published (updated )

Apache POIApache POI: parsing OOXML based files (xlsx, docx, etc.), poi-ooxml could read unexpected data if underlying zip has duplicate zip entry names

Risk 20
Severity
5.3
EPSS
0.05%
First published (updated )

NetApp SnapcenterPrivilege Escalation Vulnerability in SnapCenter

Risk 59
Severity
9.9
EPSS
0.03%
First published (updated )

vim VimVim vulnerable to potential data loss with zip.vim and special crafted zip files

Risk 21
Severity
4.4
EPSS
0.04%
First published (updated )

PHP PHPStream HTTP wrapper header check might omit basic auth header

Risk 51
Severity
7.3
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

PHP PHPStreams HTTP wrapper does not fail for headers with invalid name and no colon

Risk 27
Severity
6.3
First published (updated )

PHP PHPStream HTTP wrapper truncates redirect location to 1024 bytes

Risk 86
Severity
9.8
First published (updated )

OmniAuth Omniauth Saml RubyGHSL-2024-329_GHSL-2024-330: Authentication bypasses in ruby-saml - CVE-2025-25291, CVE-2025-25292

Risk 63
Severity
9.8
EPSS
0.44%
First published (updated )

OmniAuth Omniauth Saml RubyGHSL-2024-329_GHSL-2024-330: Authentication bypasses in ruby-saml - CVE-2025-25291, CVE-2025-25292

Risk 63
Severity
9.8
EPSS
0.51%
First published (updated )

AMI Megarac Sp-xAMI MegaRAC SPx Authentication Bypass by Spoofing Vulnerability

Risk 100
Severity
10
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Apache TomcatApache Tomcat Path Equivalence Vulnerability

Risk 90
Severity
10
EPSS
0.04%
First published (updated )

vim VimImproper Input Validation in Vim

Risk 38
Severity
7.1
EPSS
0.06%
First published (updated )

vim Vimheap-use-after-free in function str_to_reg in vim/vim

Risk 25
Severity
4.2
EPSS
0.02%
First published (updated )

Apple iPadOSUse After Free, Buffer Overflow, Input Validation, Null Pointer Dereference, Integer Overflow

Risk 93
Severity
9.8
First published (updated )

Xmlsoft Libxml2Buffer Overflow

Risk 44
Severity
7.8
EPSS
0.04%
First published (updated )
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203