Known Vulnerabilities for Snap Creator Framework by Netapp
Listed below are 10 of the newest known vulnerabilities associated with "Snap Creator Framework" by "Netapp".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-22968 | In Spring Framework versions 5.3.0 - 5.3.18, 5.2.0 - 5.2.20, and older unsupported versions, the patterns for disallowedField... | 5.3 - MEDIUM | 2022-04-14 | 2022-10-19 |
| CVE-2021-42550 | In logback version 1.2.7 and prior versions, an attacker with the required privileges to edit configurations files could craf... | 6.6 - MEDIUM | 2021-12-16 | 2022-12-12 |
| CVE-2021-34429 | For Eclipse Jetty versions 9.4.37-9.4.42, 10.0.1-10.0.5 & 11.0.1-11.0.5, URIs can be crafted using some encoded characters to... | 5.3 - MEDIUM | 2021-07-15 | 2023-11-07 |
| CVE-2021-34428 | For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, if an exception is thrown from the SessionListener#sessionDestroy... | 3.5 - LOW | 2021-06-22 | 2023-11-07 |
| CVE-2021-28169 | For Eclipse Jetty versions <= 9.4.40, <= 10.0.2, <= 11.0.2, it is possible for requests to the ConcatServlet with a doubly en... | 5.3 - MEDIUM | 2021-06-09 | 2023-11-07 |
| CVE-2021-23926 | The XML parsers used by XMLBeans up to version 2.6.0 did not set the properties needed to protect the user from malicious XML... | 9.1 - CRITICAL | 2021-01-14 | 2023-11-07 |
| CVE-2021-23901 | An XML external entity (XXE) injection vulnerability was discovered in the Nutch DmozParser and is known to affect Nutch vers... | 9.1 - CRITICAL | 2021-01-25 | 2023-11-07 |
| CVE-2021-22096 | In Spring Framework versions 5.3.0 - 5.3.10, 5.2.0 - 5.2.17, and older unsupported versions, it is possible for a user to pro... | 4.3 - MEDIUM | 2021-10-28 | 2022-04-28 |
| CVE-2020-7656 | jquery prior to 1.9.0 allows Cross-site Scripting attacks via the load method. The load method fails to recognize and remove ... | 6.1 - MEDIUM | 2020-05-19 | 2023-06-22 |
| CVE-2020-5421 | In Spring Framework versions 5.2.0 - 5.2.8, 5.1.0 - 5.1.17, 5.0.0 - 5.0.18, 4.3.0 - 4.3.28, and older unsupported versions, t... | 6.5 - MEDIUM | 2020-09-19 | 2023-11-07 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Netapp | Snap Creator Framework | 4.3.3 | All | All | All |
| Application | Netapp | Snap Creator Framework | 4.3.2 | All | All | All |
| Application | Netapp | Snap Creator Framework | 4.3.1 | All | All | All |
| Application | Netapp | Snap Creator Framework | 4.3 | All | All | All |
| Application | Netapp | Snap Creator Framework | 4.1.2 | All | All | All |
| Application | Netapp | Snap Creator Framework | 4.1.1 | All | All | All |
| Application | Netapp | Snap Creator Framework | 4.1.0 | All | All | All |