Known Vulnerabilities for Snap Creator Framework by Netapp
Listed below are 10 of the newest known vulnerabilities associated with "Snap Creator Framework" by "Netapp".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-22968 json | In Spring Framework versions 5.3.0 - 5.3.18, 5.2.0 - 5.2.20, and older unsupported versions, the patterns for disallowedField... | 5.3 - MEDIUM | 2022-04-14 | 2022-10-19 |
| CVE-2021-42550 json | In logback version 1.2.7 and prior versions, an attacker with the required privileges to edit configurations files could craf... | 6.6 - MEDIUM | 2021-12-16 | 2022-12-12 |
| CVE-2021-34429 json | For Eclipse Jetty versions 9.4.37-9.4.42, 10.0.1-10.0.5 & 11.0.1-11.0.5, URIs can be crafted using some encoded characters to... | 5.3 - MEDIUM | 2021-07-15 | 2023-11-07 |
| CVE-2021-34428 json | For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, if an exception is thrown from the SessionListener#sessionDestroy... | 3.5 - LOW | 2021-06-22 | 2023-11-07 |
| CVE-2021-28169 json | For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, it is possible for requests to the ConcatServlet with a doubly en... | 5.3 - MEDIUM | 2021-06-09 | 2023-11-07 |
| CVE-2021-23926 json | The XML parsers used by XMLBeans up to version 2.6.0 did not set the properties needed to protect the user from malicious XML... | 9.1 - CRITICAL | 2021-01-14 | 2023-11-07 |
| CVE-2021-23901 json | An XML external entity (XXE) injection vulnerability was discovered in the Nutch DmozParser and is known to affect Nutch vers... | 9.1 - CRITICAL | 2021-01-25 | 2023-11-07 |
| CVE-2021-22096 json | In Spring Framework versions 5.3.0 - 5.3.10, 5.2.0 - 5.2.17, and older unsupported versions, it is possible for a user to pro... | 4.3 - MEDIUM | 2021-10-28 | 2022-04-28 |
| CVE-2020-36518 json | jackson-databind before 2.13.0 allows a Java StackOverflow exception and denial of service via a large depth of nested object... | 7.5 - HIGH | 2022-03-11 | 2022-11-29 |
| CVE-2020-27223 json | In Eclipse Jetty 9.4.6.v20170531 to 9.4.36.v20210114 (inclusive), 10.0.0, and 11.0.0 when Jetty handles a request containing ... | 5.3 - MEDIUM | 2021-02-26 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Netapp | Snap Creator Framework | 4.3.3 | |||
| Application | Netapp | Snap Creator Framework | 4.3.2 | |||
| Application | Netapp | Snap Creator Framework | 4.3.1 | |||
| Application | Netapp | Snap Creator Framework | 4.3 | |||
| Application | Netapp | Snap Creator Framework | 4.1.2 | |||
| Application | Netapp | Snap Creator Framework | 4.1.1 | |||
| Application | Netapp | Snap Creator Framework | 4.1.0 |