Advisory ID: NTAP-20230725-0006 Advisory Title: July 2023 Java Platform Standard Edition Vulnerabilities in NetApp Products Version: 19.0 Last Updated: 05/29/2025 Status: Interim Summary: Multiple NetApp products incorporate the Oracle Java Platform, Standard Edition (Java SE) software libraries. Certain Java SE (JDK and JRE) versions are susceptible to vulnerabilities that could allow unauthorized update, insert or delete access to a subset of or all Oracle Java SE accessible data or unauthorized ability to cause a denial of service (DoS) of Oracle Java SE. Impact: Successful exploitation of these vulnerabilities could allow unauthorized update, insert or delete access to a subset of or all Oracle Java SE accessible data or unauthorized ability to cause a denial of service (DoS) of Oracle Java SE. Vulnerability Scoring Details: - CVE-2023-22006: LOW (3.7) - CVE-2023-22036: LOW (3.7) - CVE-2023-22041: MEDIUM (5.1) - CVE-2023-22043: MEDIUM (5.9) - CVE-2023-22044: LOW (3.7) - CVE-2023-22045: LOW (3.7) - CVE-2023-22049: LOW (3.7) - CVE-2023-25193: LOW (3.7)