Description
Trident versions v25.02.1 through v26.06.1 are susceptible to a vulnerability that could allow an authenticated attacker with access to debug logs to view LUKS passphrases or SMB Active Directory credentials.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Workaround
Disable debug level logging in unfixed versions.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://security.netapp.com/advisory/NTAP-20261009-0026 |
|
History
Fri, 09 Oct 2026 22:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Trident versions v25.02.1 through v26.06.1 are susceptible to a vulnerability that could allow an authenticated attacker with access to debug logs to view LUKS passphrases or SMB Active Directory credentials. | |
| Title | CVE-2026-22061 Debug Log Information Disclosure Vulnerability in Trident | |
| Weaknesses | CWE-215 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: netapp
Published:
Updated: 2026-10-09T22:02:54.449Z
Reserved: 2026-01-05T22:49:12.527Z
Link: CVE-2026-22061
No data.
No data.
No data.
OpenCVE Enrichment
No data.
Weaknesses