CVE-2025-26484: Dell Cloudlink

Medium severity, CVSS 4.9. EPSS: 0.3% chance of exploitation in the next 30 days.

Dell CloudLink, versions 8.0 through 8.1.1, contains an Improper Restriction of XML External Entity Reference vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Denial of service.

Affected products

  • Dell Cloudlink: from 8.0, before 8.1.2 (fixed in 8.1.2)

Published 2025-08-14. Last modified 2026-06-17.