Vulnerabilities > Purestorage > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-10-03 CVE-2023-32572 Unspecified vulnerability in Purestorage Purity//Fa
A flaw exists in FlashArray Purity wherein under limited circumstances, an array administrator can alter the retention lock of a pgroup and disable pgroup SafeMode protection.
network
low complexity
purestorage
4.9
2023-10-02 CVE-2023-31042 Unspecified vulnerability in Purestorage Purity
A flaw exists in FlashBlade Purity whereby an authenticated user with access to FlashBlade’s object store protocol can impact the availability of the system’s data access and replication protocols.
network
low complexity
purestorage
4.3
2022-07-11 CVE-2022-31524 Path Traversal vulnerability in Purestorage Pure Swagger
The PureStorage-OpenConnect/swagger repository through 1.1.5 on GitHub allows absolute path traversal because the Flask send_file function is used unsafely.
network
low complexity
purestorage CWE-22
6.4