Storagegrid
74 CVEs tracked. 2 of them are in CISA KEV.
This hub aggregates every CVE we track for Storagegrid, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
Storagegrid CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 1 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 2 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 4 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 1 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 1 |
| 2026-09 | 0 |
Severity
How the 74 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical9
- High27
- Medium26
- Low11
Latest CVEs
The 15 most recently published vulnerabilities affecting Storagegrid.
- CVE-2026-22056CVE-2026-22056 Denial of Service Vulnerability in StorageGRID (formerly StorageGRID Webscale)—
- CVE-2026-22051StorageGRID (formerly StorageGRID Webscale) versions prior to 11.9.0.13 and 12.0.0.6 are susceptible to a Information Disclosure vulnerability. Successful exploit could allow an authenticated attac...4.3
- CVE-2025-26517CVE-2025-26517 Privilege Escalation Vulnerability in StorageGRID (formerly StorageGRID Webscale)5.4
- CVE-2025-26516CVE-2025-26516 Denial of Service Vulnerability in StorageGRID (formerly StorageGRID Webscale)5.3
- CVE-2025-26515CVE-2025-26515 Server-Side Request Forgery Vulnerability in StorageGRID (formerly StorageGRID Webscale)7.5
- CVE-2025-26514CVE-2025-26514 Reflected Cross-Site Scripting Vulnerability in StorageGRID (formerly StorageGRID Webscale)6.4
- CVE-2025-25292Ruby SAML vulnerable to SAML authentication bypass due to namespace handling (parser differential)9.8
- CVE-2025-25291ruby-saml vulnerable to SAML authentication bypass due to DOCTYPE handling (parser differential)9.8
- CVE-2024-21994CVE-2024-21994 Denial of Service Vulnerability in StorageGRID (formerly StorageGRID Webscale)4.3
- CVE-2024-21988CVE-2024-21988 SSH Cryptographic Implementation Vulnerability in StorageGRID (formerly StorageGRID Webscale)5.3
- CVE-2024-21984Reflected Cross-Site Scripting Vulnerability in StorageGRID (formerly StorageGRID Webscale)5.9
- CVE-2024-21983Denial of Service Vulnerability in StorageGRID (formerly StorageGRID Webscale) 6.5
- CVE-2023-27318Denial of Service Vulnerability in StorageGRID (formerly StorageGRID Webscale) 6.5
- CVE-2022-38734StorageGRID (formerly StorageGRID Webscale) versions prior to 11.6.0.8 are susceptible to a Denial of Service (DoS) vulnerability. A successful exploit could lead to to a crash of the Local Distrib...7.5
- CVE-2022-23238Linux deployments of StorageGRID (formerly StorageGRID Webscale) versions 11.6.0 through 11.6.0.2 deployed with a Linux kernel version less than 4.7.0 are susceptible to a vulnerability which could...6.5
Product grouping is registry-driven, with AI assist and human review. How it works