CVE-2026-22056
published 2026-08-28CVE-2026-22056: StorageGRID (formerly StorageGRID Webscale) versions 11.5 and higher in a non-standard configuration and scenario are susceptible to a Denial of Service…
PriorityP414low2.3CVSS 4.0
AVNACHATPPRLUINVCNVINVALSCNSINSANEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRXVXREXUX
EPSS
0.25%
16.3th percentile
StorageGRID (formerly StorageGRID Webscale) versions 11.5 and higher in a non-standard configuration and scenario are susceptible to a Denial of Service vulnerability. Successful exploit could allow an attacker with some control over the environment to cause a partial Denial of Service.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| netapp | storagegrid | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
NetApp StorageGRID 11.5 denial of service
vuldb·2026-08-29·CVSS 2.3
CVE-2026-22056 [LOW] NetApp StorageGRID 11.5 denial of service
A vulnerability classified as problematic has been found in NetApp StorageGRID 11.5. The affected element is an unknown function. The manipulation leads to denial of service.
This vulnerability is documented as CVE-2026-22056. The attack can be initiated remotely. There is not any exploit available.
GHSA
StorageGRID (formerly StorageGRID Webscale) versions 11.5 and higher in a non-standard configuration and scenario are susceptible to a Denial of Service vulnerability.
ghsa_unreviewed·2026-08-29
CVE-2026-22056 [LOW] CWE-774 StorageGRID (formerly StorageGRID Webscale) versions 11.5 and higher in a non-standard configuration and scenario are susceptible to a Denial of Service vulnerability.
StorageGRID (formerly StorageGRID Webscale) versions 11.5 and higher in a non-standard configuration and scenario are susceptible to a Denial of Service vulnerability. Successful exploit could allow an attacker with some control over the environment to cause a partial Denial of Service.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2026-08-28
Published