CVE-2026-54489Patch(dell / virtual_storage_integrator)

LOWCVSS 9.8 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch dell virtual_storage_integrator systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Dell Virtual Storage Integrator for VMware vSphere Client, versions prior to 10.11.1.0, contain(s) a Sensitive Information Disclosure vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability, leading to information disclosure and session hijacking. This vulnerability is considered critical as it allows an unauthenticated attacker to obtain active session credentials and fully impersonate authenticated users, including administrators. Dell recommends customers to upgrade at the earliest opportunity.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-200

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • virtual_storage_integrator

Threat summary

  • Patch or workaround signal is available
  • 1 mentions across 1 observed day

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
virtual_storage_integrator

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-08-08: 1Patch / Workaround · 2026-08-08: 1Technical Details · 2026-08-08: 108-08
Signal classification1 categories
Patch
1100.0%
Referenced assets1 URL
By indicator
Full discourse1 post
  • ThreatAft@ThreatAft
    Patch

    🚨 Dell VSI + AI Copilot: Two Critical CVEs CVE-2026-54489 (9.1) — Dell VSI info disclosure CVE-2026-14526 (9.8) — AI Copilot auth bypass Both unauthenticated. Patch NOW. → http://threataft.com/articles/dell-vsi-ai-copilot-cve-bundle #cybersecurity #infosec #VMware #WordPress #AIsecurity #ThreatIntel

    Post summary

    The alert announces two critical CVEs affecting Dell VSI and AI Copilot, highlights their unauthenticated nature, and urges immediate patching.

    0000063
    36 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appdellvirtual_storage_integrator-vmware_vsphere-

Explore more