Dell patches 18 critical flaws in storage and Kubernetes tools
Dell released fixes for 18 vulnerabilities in its Container Storage Modules (CSM) and System Update (DSU). Two flaws are rated 10 on the CVSS scale and five others 9 or higher, allowing authentication bypass, root access and forged admin tokens. No exploitation has been observed, but Dell urges immediate upgrades.
- CVE-2026-63688 and CVE-2026-63692 in CSM carry the maximum CVSS score of 10
- CVE-2026-67269 (9.9) grants root access and compromises all Kubernetes cluster nodes
- CVE-2026-86360 (9.6) in DSU allows arbitrary code execution with root privileges
- DSU before 2.3.0.0 and CSM before 1.17.0 are affected; no workarounds, patching required
Read next
Security