Dell CSM Critical Flaws Put Kubernetes Systems at Risk | Britec

Dell CSM Vulnerabilities Could Give Attackers Admin Access to Kubernetes Environments

Dell has released security updates for several critical vulnerabilities affecting its Container Storage Modules (CSM), including two flaws carrying the maximum CVSS score of 10.0.

The vulnerabilities could allow attackers to bypass authentication, gain administrative control over storage resources and, in some cases, obtain root-level access to Kubernetes cluster nodes.

For organizations using Dell CSM, these vulnerabilities should be addressed quickly.

What Happened?

Dell disclosed six serious vulnerabilities affecting its Container Storage Modules.

Among the most severe are CVE-2026-63688 and CVE-2026-63692, both rated 10.0.

CVE-2026-63688 could allow an unauthenticated remote attacker to access administrator credentials for registered storage systems.

CVE-2026-63692 could allow an attacker to bypass authentication controls and gain administrative privileges over the CSM authorization service.

Other vulnerabilities could allow attackers to:

  • Gain root-level access to Kubernetes nodes
  • Forge administrative authentication tokens
  • Access Kubernetes secrets
  • Modify role-based access controls
  • Manipulate storage resources across multiple tenants

One vulnerability could potentially allow an attacker to compromise multiple Kubernetes nodes through a single malicious custom resource.

Why Should Businesses Care?

Kubernetes environments often support critical applications, cloud workloads and business data.

If an attacker gains administrative or root-level access, they could potentially access sensitive information, manipulate storage resources, change security permissions or disrupt workloads.

The authentication bypass vulnerabilities are particularly concerning because some attacks may not require an existing account or compromised credentials.

Organizations running vulnerable Dell CSM deployments should therefore treat the updates as a priority.

What Should You Do?

Dell says the vulnerabilities affect CSM versions prior to 1.17.0 and recommends moving to the remediated CSM 1.18.0 release.

Organizations using Dell CSM should:

  • Upgrade to CSM 1.18.0 or later
  • Rotate JWT signing secrets
  • Review Kubernetes administrative privileges and RBAC configurations
  • Check for unexpected changes to storage permissions
  • Review logs for unusual access to CSM authorization services
  • Confirm that administrative credentials have not been exposed

Dell has indicated that there are no alternative workarounds or mitigations for the affected versions, making the software update particularly important.

The Britec Takeaway

Critical vulnerabilities do not always begin with phishing emails or stolen passwords. Weaknesses in infrastructure management tools can sometimes give attackers a direct path into highly privileged systems.

Keeping infrastructure software patched, monitoring access and regularly reviewing privileged accounts can significantly reduce that exposure.

If your organization needs help reviewing its IT infrastructure, patching strategy or cybersecurity environment, Britec helps.

Talk to an Expert.