VulnSea

dell has 180 CVEs on record between 2017 and 2026. Disclosure cadence is accelerating: 171 in the last 90 days against 2 in the 90 before. The busiest recent month was September 2026 with 163. The median CVSS is 6.5 (medium), with 11 rated critical. None have a confirmed exploitation report. The dominant weakness classes are CWE-295 (21) and CWE-78 (12). Most affected products: secure_connect_gateway (89), OpenManage Server Administrator Managed Node (Patch) for Windows (19), Secure Connect Gateway 5.0 - Application (15).

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
6.5
Publish → KEV
Last 90 days
171 prev 2

Products

  • secure_connect_gateway 89
  • OpenManage Server Administrator Managed Node (Patch) for Windows 19
  • Secure Connect Gateway 5.0 - Application 15
  • thinos 7
  • wyse_management_suite 6
  • update_package_framework 5
180
Total CVEs
11
Critical
0
CISA KEV
0
Exploited

dell vulnerabilities

CVEs affecting dell, newest first. Open any entry for full detail, references, and exploit status.

180 CVEsRSS

CVE-2026-71180High· 8.2
5d ago

Dell Update Package Framework, versions prior to 26.07.03, contains an Unchecked Return Value vulnerability

Dell Update Package Framework, versions prior to 26.07.03, contains an Unchecked Return Value vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

Twilightdell · update_package_frameworkEPSS 0.13%via NVD
CVE-2026-71182Low· 3.0
5d ago

Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability

Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerabilit…

Sunlitdell · update_package_frameworkEPSS 0.12%via NVD
CVE-2026-71181Low· 3.0
5d ago

Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability

Dell Update Package Framework, versions prior to 26.07.03, contains an Improper Link Resolution Before File Access ('Link Following') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerabilit…

Sunlitdell · update_package_frameworkEPSS 0.12%via NVD
CVE-2026-86358Medium· 6.5
5d ago

Dell Update Package Framework, versions prior to 26.07.03, contains a Stack-based Buffer Overflow vulnerability

Dell Update Package Framework, versions prior to 26.07.03, contains a Stack-based Buffer Overflow vulnerability. An unauthenticated attacker with adjacent network access could potentially exploit this vulnerability, leading to Remote exe…

Sunlitdell · update_package_frameworkEPSS 0.30%via NVD
CVE-2026-86359High· 8.5
5d ago

Dell Repository Manager, versions prior to 3.5.2, contains an Incorrect Default Permissions vulnerability

Dell Repository Manager, versions prior to 3.5.2, contains an Incorrect Default Permissions vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

TwilightDell · Repository ManagerEPSS 0.24%via NVD
CVE-2025-43936High· 8.1
5d ago

Dell ObjectScale, versions prior to ObjectScale 4.4.0.0, contains an Improper Authentication vulnerability

Dell ObjectScale, versions prior to ObjectScale 4.4.0.0, contains an Improper Authentication vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.

Twilightdell · objectscaleEPSS 0.48%via NVD
CVE-2026-26947Medium· 6.7
5d ago

Dell ECS versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.4.0.0, contains an Improper Privilege Management vulnerability

Dell ECS versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.4.0.0, contains an Improper Privilege Management vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability…

SunlitDell · ECSEPSS 0.16%via NVD
CVE-2026-76104Medium· 5.5
5d ago

Dell ObjectScale, versions prior to 4.4.0.0, contains an Incorrect Permission Assignment for Critical Resource vulnerability in the OS

Dell ObjectScale, versions prior to 4.4.0.0, contains an Incorrect Permission Assignment for Critical Resource vulnerability in the OS. A high privileged attacker with remote access could potentially exploit this vulnerability, leading t…

Sunlitdell · objectscaleEPSS 0.38%via NVD
CVE-2026-70416Critical· 10.0
5d ago

Dell ObjectScale, versions prior to 4.4.0.0, contains a Deserialization of Untrusted Data vulnerability

Dell ObjectScale, versions prior to 4.4.0.0, contains a Deserialization of Untrusted Data vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Remote execution.

Midnightdell · objectscaleEPSS 0.91%via NVD
CVE-2025-36591Medium· 4.4
5d ago

Dell ECS versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.4.0.0, contains an Use of a Broken or Risky Cryptographic Algorithm vulnerability

Dell ECS versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.4.0.0, contains an Use of a Broken or Risky Cryptographic Algorithm vulnerability. A high privileged attacker with local access could potentially exploit…

SunlitDell · Elastic Cloud Storage (ECS)EPSS 0.11%via NVD
CVE-2026-81240High· 8.6
6d ago

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to…

Twilightdell · wyse_management_suiteEPSS 0.36%via NVD
CVE-2026-81239High· 8.6
6d ago

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to…

Twilightdell · wyse_management_suiteEPSS 0.36%via NVD
CVE-2026-81238High· 7.5
6d ago

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain a Missing Authentication for Critical Function vulnerability

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain a Missing Authentication for Critical Function vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Una…

Twilightdell · wyse_management_suiteEPSS 0.25%via NVD
CVE-2026-81237Medium· 6.5
6d ago

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Improper Authentication vulnerability

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Improper Authentication vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.

Sunlitdell · wyse_management_suiteEPSS 0.20%via NVD
CVE-2026-81236High· 8.6
6d ago

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain an Unrestricted Upload of File with Dangerous Type vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to…

Twilightdell · wyse_management_suiteEPSS 0.36%via NVD
CVE-2026-81235High· 8.0
6d ago

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain a Missing Cryptographic Step vulnerability

Dell Wyse Management Suite, versions prior to 2605.0.3.683, contain a Missing Cryptographic Step vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Information tampering.

Twilightdell · wyse_management_suiteEPSS 0.15%via NVD
CVE-2026-63696Critical· 9.1
6d ago

Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Download of Code Without Integrity Check vulnerability

Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Download of Code Without Integrity Check vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code ex…

MidnightDell · SmartFabric OS10 SoftwareEPSS 0.32%via NVD
CVE-2026-63695Critical· 9.8
6d ago

Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Session Fixation vulnerability

Dell SmartFabric OS10 Software, versions prior to 10.6.1.3, contains a Session Fixation vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Session theft.

MidnightDell · SmartFabric OS10 SoftwareEPSS 0.53%via NVD
CVE-2026-81052Medium· 6.8
1w ago

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Download of Code Without Integrity Check vulnerability

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Download of Code Without Integrity Check vulnerability. An unauthenticated attacker with physical access could potentially exploit this vulnerability, leading to arbitrary code ex…

Sunlitdell · thinosEPSS 0.14%via NVD
CVE-2026-81048Critical· 9.6
1w ago

Dell ThinOS 10, versions prior to 2605_10.2616, contain an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability

Dell ThinOS 10, versions prior to 2605_10.2616, contain an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. An unauthenticated attacker with adjacent network access could potentially expl…

Midnightdell · thinosEPSS 1.2%via NVD
CVE-2026-81468Critical· 9.1
1w ago

Dell ThinOS 10, versions prior to 2605_10

Dell ThinOS 10, versions prior to 2605_10. 2616, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploi…

Midnightdell · thinosEPSS 2.3%via NVD
CVE-2026-81467Critical· 9.8
1w ago

Dell ThinOS 10, versions prior to 2605_10

Dell ThinOS 10, versions prior to 2605_10. 2616, contains an Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability. An unauthenticated attacker with remote access could potentially explo…

Midnightdell · thinosEPSS 3.3%via NVD
CVE-2026-81046Critical· 9.4
1w ago

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Protection Mechanism Failure vulnerability

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Protection Mechanism Failure vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Arbitrary Code Execution within…

Midnightdell · thinosEPSS 0.37%via NVD
CVE-2026-81049Medium· 4.4
1w ago

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Missing Support for Integrity Check vulnerability

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Missing Support for Integrity Check vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to arbitrary code execution.

Sunlitdell · thinosEPSS 0.10%via NVD
CVE-2026-81051Medium· 6.6
1w ago

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Security Version Number Mutable to Older Versions vulnerability

Dell ThinOS 10, versions prior to 2605_10.2616, contain a Security Version Number Mutable to Older Versions vulnerability. A low privileged attacker with physical access could potentially exploit this vulnerability, leading to Protection…

Sunlitdell · thinosEPSS 0.15%via NVD
CVE-2026-80124Medium· 5.5
1w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insertion of Sensitive Information into Log File vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could …

SunlitDell · Secure Connect Gateway 5.0 - ApplicationEPSS 0.10%via CVEORG
CVE-2026-80175Low· 3.3
1w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insertion of Sensitive Information into Externally-Accessible File or Directory vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insertion of Sensitive Information into Externally-Accessible File or Directory vulnerability. A low privileged at…

SunlitDell · Secure Connect Gateway 5.0 - ApplicationEPSS 0.10%via CVEORG
CVE-2026-78491High· 8.2
1w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Improper Certificate Validation vulnerability. An unauthenticated attacker with remote access could potentially ex…

TwilightDell · Secure Connect Gateway 5.0 - ApplicationEPSS 0.16%via CVEORG
CVE-2026-80174Medium· 5.3
1w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insufficient Session Expiration vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains an Insufficient Session Expiration vulnerability. A low privileged attacker with remote access could potentially expl…

SunlitDell · Secure Connect Gateway 5.0 - ApplicationEPSS 0.17%via CVEORG
CVE-2026-79635High· 7.3
1w ago

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Server-Side Request Forgery (SSRF) vulnerability

Dell SCG 5.0 Appliance versions prior to 5.36.00.16 and Dell SCG 5.0 Application versions prior to 5.36.00.00, contains a Server-Side Request Forgery (SSRF) vulnerability. An unauthenticated attacker with remote access could potentially …

TwilightDell · Secure Connect Gateway 5.0 - ApplicationEPSS 0.18%via CVEORG
dell vulnerabilities (CVEs) — page 2 · VulnSea