CVE-2026-22050: Netapp Ontap
Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.
ONTAP versions 9.16.1 prior to 9.16.1P9 and 9.17.1 prior to 9.17.1P2 with snapshot locking enabled are susceptible to a vulnerability which could allow a privileged remote attacker to set the snapshot expiry time to none.
Affected products
- Netapp Ontap: version 9.16.1 only; version 9.17.1 only
Published 2026-01-12. Last modified 2026-06-17.