THE page reports on critical security vulnerabilities related to the Dell Virtual Storage Integrator (VSI) for VMware vSphere Client. Two significant flaws were identified: CVE-2026-67261, which allows unauthenticated remote code execution with a CVSS score of 9.8, and CVE-2026-54489, which enables session hijacking with a score of 9.1. These vulnerabilities affect versions prior to 10.11.1.0, and Dell has released patches for both flaws. No exploitation of these vulnerabilities has been confirmed yet. Users are strongly advised to update to version 10.11.1.0 or later to mitigate risk.
Dell VSI flaw CVE-2026-67261 lets attackers run code remotely
CyberSIXT Evidence Panel
Article by CyberSIXT