CVE-2026-22051: Netapp Storagegrid
Medium severity, CVSS 4.3. EPSS: 0.2% chance of exploitation in the next 30 days.
StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9.0.13 and 12.0.0.6 are susceptible to a Information Disclosure vulnerability. Successful exploit could allow an authenticated attacker with low privileges to run arbitrary metrics queries, revealing metric results that they do not have access to.
Affected products
- Netapp Storagegrid: before 11.9.0.13 (fixed in 11.9.0.13); from 12.0, before 12.0.0.6 (fixed in 12.0.0.6)
Published 2026-04-20. Last modified 2026-07-08.