VORANT. Threat Intelligence Sign in Get the full feed

NetApp patches flaws in Trident, Agent Console

high vulnerability

NetApp addressed multiple vulnerabilities in Console Agent, Shift Toolkit, Trident Autosupport, and Trident that allow remote denial of service and data confidentiality and integrity compromise.

The French CERT (CERT-FR) issued an advisory detailing multiple security vulnerabilities affecting several NetApp products. The flaws impact Console Agent versions prior to 4.3.0, Shift Toolkit versions prior to 2.2, Trident Autosupport versions prior to 25.06.0, Trident Protect without the latest security patch, and Trident versions prior to 25.06.0.

The vulnerabilities enable attackers to conduct remote denial of service attacks, compromise data confidentiality, and compromise data integrity. NetApp has released security bulletins and patches to address these issues. Organizations using affected NetApp products should consult the vendor's security advisories and apply the available updates to mitigate these risks.

Mentioned in this report

Vulnerabilities CVE-2023-24531CVE-2024-12905pocCVE-2025-22870CVE-2025-47907

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0742

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free