CVE-2026-67269

Summary

Dell Container Storage Modules (CSM) Operator, versions prior to 1.18.0 contains an Improper Privilege Management vulnerability in the ContainerStorageModule Custom Resource reconciler. A low privileged remote attacker could potentially exploit this vulnerability, leading to escalation of privileges and gaining root-level access on cluster nodes.

Affected Software

VendorProductVersion RangeStatus
DellContainer Storage Modules (CSM)0 < 1.18.0 or lateraffected

Weaknesses

  • CWE-269: CWE-269: Improper Privilege Management

References