CVE-2026-67269: Dell Container Storage Modules

Critical severity, CVSS 9.9. EPSS: 0.5% chance of exploitation in the next 30 days.

Dell Container Storage Modules (CSM) Operator, versions prior to 1.18.0 contains an Improper Privilege Management vulnerability in the ContainerStorageModule Custom Resource reconciler. A low privileged remote attacker could potentially exploit this vulnerability, leading to escalation of privileges and gaining root-level access on cluster nodes.

Affected products

  • Dell Container Storage Modules: before 1.18.0 (fixed in 1.18.0)

Published 2026-10-06. Last modified 2026-10-08.