{"data":{"id":"522150fc-3118-4680-b809-ed2a9d388f13","title":"Dell patches 18 critical flaws that could hand attackers the keys to storage and Kubernetes","summary":"Dell disclosed 18 critical vulnerabilities in its Container Storage Modules (CSM, software extensions that connect to Kubernetes, a system for managing containerized applications) and System Update tool that could let attackers bypass authentication, gain root access (complete control of a system), and manipulate storage resources. Two vulnerabilities have the highest severity rating of 10 on the CVSS (Common Vulnerability Scoring System, a 0-10 scale measuring how serious a vulnerability is), with five others rated 9 or above, and Dell reports no evidence of active exploitation yet.","solution":"Dell CSM versions prior to 1.17.0 are affected; customers must upgrade to version 1.18.0 or later. Dell DSU versions prior to 2.3.0.0 are affected; customers must upgrade to version 2.3.0.0 or later. Dell stated there are no workarounds or mitigations; customers must update to these fixed versions.","labels":["security"],"sourceUrl":"https://www.csoonline.com/article/4230923/dell-patches-18-critical-flaws-that-could-hand-attackers-the-keys-to-storage-and-kubernetes.html","publishedAt":"2026-10-06T01:25:24.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"critical","attackType":["supply_chain"],"issueType":"news","affectedPackages":null,"affectedVendors":[],"affectedVendorsRaw":[],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-10-06T01:25:24.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"trivial","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"inference","llmSpecific":false,"classifierConfidence":0.75,"researchCategory":null,"atlasIds":null}}