SOLIDIGM SUPPORT CENTER
Security Center
Solidigm values your data’s security with a comprehensive SSD vulnerability handling process. Learn about our mitigation for vulnerabilities and create a case here.
Details
Solidigm provides public notification of security vulnerabilities through publication of a Public Security Advisory, document in PDF format posted on Solidigm.com. Each listed security vulnerability is given a CVE-ID (Common Vulnerabilities and Exposures - Identification) and a score based on the CVSS (Common Vulnerability Scoring System)™. Refer to the table below for the Public Security Advisories (PSA), which provides information on the latest FW that has mitigated the vulnerability. Solidigm recommends customers always use the latest available firmware.
| Public Security Advisory Document | Date of Publication |
|---|---|
| Revision 1.1 | June 2022 |
| Revision 1.2 | March 2025 |
| Revision 1.3 | June 2026 |
Security Center
Solidigm prioritizes the security of the Solidigm SSDs deployed by our customers. We are committed to promptly address security vulnerabilities and to follow industry standard best practices in the publication of the Public Security Advisory.
If you have information about a security vulnerability or issue with a Solidigm product, please send an email to security@solidigm.com.
Review Process
A member of Solidigm’s Security Team will review the e-mail and may contact you to seek your willingness to collaborate on resolving the issue. Solidigm observes the following Vulnerability Handling Policies and Process:
Security Team
Solidigm’s Security Team follows a defined 4 step process:
01
Vulnerability Reporting
This is the start of the process where Solidigm becomes aware of a potential security vulnerability. In the case where the potential security has been notified by an external party, Solidigm will acknowledge receipt and will include the party in appropriate Security Disclosure information.
02
Vulnerability Evaluation
The Solidigm Security Team will confirm the reported potential vulnerability, assess the impact and risk and utilize the Common Vulnerabilities Scoring System (CVSS). Based on the Solidigm Security review, and if the vulnerability is actively being exploited there are two different paths the Solidigm Security Team will follow.
03
Vulnerability Solution
If the verified vulnerability is being exploited, Solidigm may publish a temporary solution or guidance to mitigate the exploitation while a responsible complete solution is developed. In all other cases, the Security Team will develop a complete solution that mitigates the documented vulnerability.
04
Vulnerability Disclosure
Solidigm will publish a Security Advisory of the vulnerability in an effective and timely manner. The document will be available to all customers on the Solidigm Security website at www.solidigm.com/support/
Subscribe for product updates, technical resources, and insights on accelerating AI workloads with Solidigm Storage