NetApp / Ontap Tools
30 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2025-27820 | Apache HttpComponents: PSL (Public Suffix List) validation bypass | HIGH | 7.5 | Apr 24, 2025 |
| CVE-2025-0167 | netrc and default credential leak | LOW | 3.4 | Feb 5, 2025 |
| CVE-2024-52533 | glib: buffer overflow in set_connect_msg() | CRITICAL | 9.8 | Nov 11, 2024 |
| CVE-2024-38286 | Apache Tomcat: Denial of Service | HIGH | 7.7 | Nov 7, 2024 |
| CVE-2024-49761 | REXML ReDoS vulnerability | MEDIUM | 6.6 | Oct 28, 2024 |
| CVE-2024-47554 | Apache Commons IO: Possible denial of service attack on untrusted input to XmlStreamReader | HIGH | 8.7 | Oct 3, 2024 |
| CVE-2024-7254 | Stack overflow in Protocol Buffers Java Lite | HIGH | 8.7 | Sep 19, 2024 |
| CVE-2024-8096 | OCSP stapling bypass with GnuTLS | MEDIUM | 6.5 | Sep 11, 2024 |
| CVE-2024-6119 | Possible denial of service in X.509 name checks | HIGH | 7.5 | Sep 3, 2024 |
| CVE-2024-39689 | Certifi removes GLOBALTRUST root certificate | HIGH | 7.5 | Jul 5, 2024 |
| CVE-2024-39884 | Apache HTTP Server: source code disclosure with handlers configured via AddType | HIGH | 7.5 | Jul 4, 2024 |
| CVE-2024-34750 | Apache Tomcat: HTTP/2 excess header handling DoS | HIGH | 8.7 | Jul 3, 2024 |
| CVE-2024-6387 | Openssh: regresshion - race condition in ssh allows rce/dos | HIGH | 8.1 | Jul 1, 2024 |
| CVE-2024-30171 | bc-java: BouncyCastle vulnerable to a timing variant of Bleichenbacher (Marvin Attack) | MEDIUM | 5.9 | May 9, 2024 |
| CVE-2024-34397 | glib2: Signal subscription vulnerabilities | MEDIUM | 5.2 | May 7, 2024 |
| CVE-2024-24795 | Apache HTTP Server: HTTP Response Splitting in multiple modules | MEDIUM | 6.3 | Apr 4, 2024 |
| CVE-2023-38709 | Apache HTTP Server: HTTP response splitting | HIGH | 7.3 | Apr 4, 2024 |
| CVE-2024-29131 | Apache Commons Configuration: StackOverflowError adding property in AbstractListDelimiterHandler.flattenIterator() | HIGH | 7.3 | Mar 21, 2024 |
| CVE-2024-26633 | ip6_tunnel: fix NEXTHDR_FRAGMENT handling in ip6_tnl_parse_tlv_enc_lim() | MEDIUM | 5.5 | Mar 18, 2024 |
| CVE-2024-28752 | Apache CXF SSRF Vulnerability using the Aegis databinding | CRITICAL | 9.3 | Mar 15, 2024 |
| CVE-2024-28757 | expat: XML Entity Expansion | HIGH | 7.5 | Mar 10, 2024 |
| CVE-2024-1351 | MongoDB Server may allow successful untrusted connection | CRITICAL | 9.8 | Mar 7, 2024 |
| CVE-2023-52433 | netfilter: nft_set_rbtree: skip sync GC for new elements in this transaction | HIGH | 7.8 | Feb 20, 2024 |
| CVE-2024-0565 | Kernel: cifs filesystem decryption improper input validation remote code execution vulnerability in function receive_encrypted_standard of client | HIGH | 7.4 | Jan 15, 2024 |
| CVE-2023-36054 | krb5: Denial of service through freeing uninitialized pointer | MEDIUM | 6.5 | Aug 7, 2023 |
Showing 1 to 25 of 30 CVEs