CVE-2026-22055: Netapp Active Iq Onecollect

High severity, CVSS 8.8. EPSS: 0.2% chance of exploitation in the next 30 days.

Active IQ OneCollect version 2.7.3 contains hard-coded credentials that could allow an authenticated attacker with low privileges to perform unauthorized AutoSupport operations.

Affected products

  • Netapp Active Iq Onecollect: version 2.7.3 only

Published 2026-06-03. Last modified 2026-07-22.