{"ok":true,"trend":{"id":749828,"platform":"mastodon","region":"global","key":"🤖 dell patches two max-severity (cvss 10.0) flaws in container storage modules (csm) authorization v2.4.0, which connect","title":"🤖 Dell patches two max-severity (CVSS 10.0) flaws in Container Storage Modules (CSM) Authorization v2.4.0, which connect","url":"https://infosec.exchange/@cloud/117371980513026077","first_seen":"2026-10-02T15:37:29.884668Z","last_seen":"2026-10-02T15:37:29.884668Z","last_rank":8,"peak_rank":8,"last_volume":1,"peak_volume":1,"seen_count":1,"score":0.89109375,"category_hint":"cybersecurity","section":"technology","category":"cybersecurity","summary":"Dell has released Container Storage Modules Authorization v2.4.0 to fix two maximum-severity flaws, both rated CVSS 10.0, in the software that connects Dell storage arrays to Kubernetes clusters. The bugs stem from missing authentication, allowing unauthenticated remote attackers to retrieve backend admin credentials across all tenants. Security teams running Dell storage with Kubernetes are urged to update immediately, as the flaws expose sensitive credentials without requiring valid accounts.","why":"Maximum-severity flaws allowing credential theft across all tenants are an urgent patch priority for anyone running Dell storage with Kubernetes.","tone":"neutral","entities":["Dell","Container Storage Modules","Kubernetes"],"summarized_at":"2026-10-02T15:38:08.634695Z","meta":{"tag":"infosec","via":"scan","kind":"status","lang":"en","instance":"mastodon.social","tag_uses":1355},"nw":null,"promo":null,"kind":null,"importance":null,"hidden":false,"hide_reason":null,"judged_at":null,"title_en":"Dell patches two CVSS 10.0 flaws in Kubernetes storage software","section_name":"Technology","category_name":"Cybersecurity","timeline":[{"captured_at":"2026-10-02T15:37:29.884668Z","rank":8,"volume":1}],"posts":[{"platform":"mastodon","url":"https://infosec.exchange/@cloud/117371980513026077","author":"cloud@infosec.exchange","title":null,"snippet":"🤖 Dell patches two max-severity (CVSS 10.0) flaws in Container Storage Modules (CSM) Authorization v2.4.0, which connects Dell storage arrays to Kubernetes. Missing authentication lets unauthenticated remote attackers grab backend admin credentials across all tenants.…","posted_at":"2026-10-02T15:18:12Z","likes":1}],"elsewhere":[],"window":"7d"}}