Home / Oct 03, 2026 / Story
0
#3 The Hacker News general October 02, 2026 at 17:02 UTC

Dell CSM Flaws Enable Unauthenticated Admin Access and Root on Kubernetes Nodes

By [email protected] (The Hacker News)

AI Summary

Dell patched two CVSS 10.0 vulnerabilities in its Container Storage Modules (CSM), including CVE-2026-63688, a missing authentication flaw in the csm-authorization-storage gRPC server that allows unauthenticated attackers to gain admin access and root on Kubernetes nodes. All organizations using Dell CSM to connect enterprise storage arrays to Kubernetes environments should apply updates immediately.

Relevance score: 89.0/100

# More from October 03