CVE-2026-67270

Summary

Dell Container Storage Modules (CSM) versions prior to 1.18.0, contains an Improper Certificate Validation vulnerability in the proxy-server component. An unauthenticated adjacent network attacker could potentially exploit this vulnerability, leading to information exposure of storage backend administrator credentials.

Affected Software

VendorProductVersion RangeStatus
DellContainer Storage Modules (CSM)0 < 1.18.0 or lateraffected

Weaknesses

  • CWE-295: CWE-295: Improper Certificate Validation

References