Browse all 8 CVE security advisories affecting PureStorage. AI-powered Chinese analysis, POCs, and references for each vulnerability.
PureStorage provides enterprise-grade data storage solutions focused on flash arrays and cloud-integrated infrastructure. Historically, their products have faced vulnerabilities including remote code execution, cross-site scripting, and privilege escalation, with 8 CVEs currently documented. The company emphasizes security features like encryption and access controls, though no major public incidents have been widely reported. Their architecture prioritizes reduced attack surfaces through simplified management interfaces, though web-based components have occasionally introduced XSS risks. PureStorage maintains compliance with standards such as SOC 2 and HIPAA, reflecting their focus on enterprise security requirements across hybrid cloud environments.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-0207 | Sensitive Information Logging Vulnerability in FlashBlade — FlashBladeCWE-532 | 7.5 | - | 2026-04-14 |
| CVE-2026-0209 | Pure Storage FlashArray Purity 安全漏洞 — FlashArrayCWE-783 | 7.5 | - | 2026-04-14 |
| CVE-2024-3057 | Pure Storage FlashArray Purity 安全漏洞 — FlashArrayCWE-269 | 9.8 | Critical | 2024-10-08 |
| CVE-2024-0005 | FlashArray和FlashBlade 安全漏洞 — FlashArrayCWE-77 | 9.1 | Critical | 2024-09-23 |
| CVE-2024-0004 | FlashArray 安全漏洞 — FlashArrayCWE-94 | 9.1 | Critical | 2024-09-23 |
| CVE-2024-0003 | FlashArray 安全漏洞 — FlashArrayCWE-269 | 9.1 | Critical | 2024-09-23 |
| CVE-2024-0002 | FlashArray 安全漏洞 — FlashArrayCWE-287 | 10.0 | Critical | 2024-09-23 |
| CVE-2023-4976 | FlashBlade Authentication Mechanism Vulnerability — FlashBladeCWE-269 | 7.8AI | HighAI | 2024-07-17 |
This page lists every published CVE security advisory associated with PureStorage. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.