CVE-2026-71181: Dell Update Package Framework

Medium severity, CVSS 6.0. EPSS: 0.1% chance of exploitation in the next 30 days.

Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Filesystem access for attacker.

Affected products

  • Dell Update Package Framework: before 26.07.03 (fixed in 26.07.03)

Published 2026-09-16. Last modified 2026-09-21.