Skip to main content

Vendor/product archive

netapp / storagegrid CVEs

Beta · best-effort

70 CVEs tagged to netapp / storagegrid8 Critical, 26 High, 24 Medium, 12 Low, 0 Unrated.

CVE-2026-22051

Published Apr 20, 2026

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9.0.13 and 12.0.0.6 are susceptible to a Information Disclosure vulnerability. Successful exploit could allow an a…

CVSS 2.3 · Low
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-26517

Published Sep 19, 2025

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a privilege escalation vulnerability. Successful exploit could allow an…

CVSS 5.4 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-26516

Published Sep 19, 2025

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a Denial of Service vulnerability. Successful exploit could allow an una…

CVSS 5.3 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-26515

Published Sep 19, 2025

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 without Single Sign-on enabled are susceptible to a Server-Side Request Forgery (SSRF) vuln…

CVSS 7.5 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-26514

Published Sep 19, 2025

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8.0.15 and 11.9.0.8 are susceptible to a Reflected Cross-Site Scripting vulnerability. Successful exploit could…

CVSS 6.4 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-21994

Published Nov 8, 2024

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9 are susceptible to a Denial of Service (DoS) vulnerability. Successful exploit by an authenticated attacker coul…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-21988

Published Jun 14, 2024

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.7.0.9 and 11.8.0.5 are susceptible to disclosure of sensitive information via complex MiTM attacks due to a vuln…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-21984

Published Feb 16, 2024

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8 are susceptible to a difficult to exploit Reflected Cross-Site Scripting (XSS) vulnerability. Successful explo…

CVSS 5.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-21983

Published Feb 16, 2024

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.8 are susceptible to a Denial of Service (DoS) vulnerability. Successful exploit by an authenticated attacker co…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-27318

Published Feb 5, 2024

StorageGRID (formerly StorageGRID Webscale) versions 11.6.0 through 11.6.0.13 are susceptible to a Denial of Service (DoS) vulnerability. A successful exploit could lead to a cr…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-38734

Published Mar 2, 2023

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.6.0.8 are susceptible to a Denial of Service (DoS) vulnerability. A successful exploit could lead to to a crash of…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-0778

Published Mar 15, 2022

The BN_mod_sqrt() function, which computes a modular square root, contains a bug that can cause it to loop forever for non-prime moduli. Internally this function is used when pars…

CVSS 7.5 · High
evidence mentions
8
Buzz score
33.5

CVE-2022-23233

Published Mar 4, 2022

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.6.0 are susceptible to a vulnerability which when successfully exploited could lead to Denial of Service (DoS) of…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2022-23232

Published Mar 4, 2022

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.6.0 are susceptible to a vulnerability which when successfully exploited could allow disabled, expired, or locked…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-27006

Published Dec 23, 2021

StorageGRID (formerly StorageGRID Webscale) versions 11.5 prior to 11.5.0.5 are susceptible to a vulnerability which may allow an administrative user to escalate their privileges…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2021-39275

Published Sep 16, 2021

ap_escape_quotes() may write beyond the end of a buffer when given malicious input. No included modules pass untrusted data to these functions, but third-party / external modules…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9
Showing 1-25 of 70 CVEsPage 1 of 3