CVE-2026-22051

StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9.0.13 and 12.0.0.6 are susceptible to a Information Disclosure vulnerability. Successful exploit could allow an authenticated attacker with low privileges to run arbitrary metrics queries, revealing metric results that they do not have access to.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:netapp:storagegrid:*:*:*:*:*:*:*:*
cpe:2.3:a:netapp:storagegrid:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-20 22:16

Updated : 2026-07-08 03:28


NVD link : CVE-2026-22051

Mitre link : CVE-2026-22051

CVE.ORG link : CVE-2026-22051


JSON object : View

Products Affected

netapp

  • storagegrid
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor