# NetApp patches flaws in Trident, Agent Console

Published: 2026-06-12 · Severity: high
Canonical: https://vorant.io/reports/549793e1-ccf9-4123-8aee-b5e34dc481aa/netapp-patches-flaws-in-trident-agent-console

> NetApp addressed multiple vulnerabilities in Console Agent, Shift Toolkit, Trident Autosupport, and Trident that allow remote denial of service and data confidentiality and integrity compromise.

The French CERT (CERT-FR) issued an advisory detailing multiple security vulnerabilities affecting several NetApp products. The flaws impact Console Agent versions prior to 4.3.0, Shift Toolkit versions prior to 2.2, Trident Autosupport versions prior to 25.06.0, Trident Protect without the latest security patch, and Trident versions prior to 25.06.0.

The vulnerabilities enable attackers to conduct remote denial of service attacks, compromise data confidentiality, and compromise data integrity. NetApp has released security bulletins and patches to address these issues. Organizations using affected NetApp products should consult the vendor's security advisories and apply the available updates to mitigate these risks.

## Mentioned in this report

- Vulnerabilities: CVE-2023-24531, CVE-2024-12905 (poc), CVE-2025-22870, CVE-2025-47907

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0742

---

This is the free public brief from Vorant Threat Intelligence. When citing, attribute "Vorant" and link https://vorant.io/reports/549793e1-ccf9-4123-8aee-b5e34dc481aa/netapp-patches-flaws-in-trident-agent-console.
Full IOC sets, deployable detections, the entity graph, TAXII 2.1 feed and real-time alerts: https://vorant.io/signup
