DSA-2026-255: Security Update for Cloudlink Multiple Vulnerabilities

Summary: Cloudlink remediation is available for multiple security vulnerabilities that could be exploited by malicious users to compromise the affected system.

This article applies to This article does not apply to This article is not tied to any specific product. Not all product versions are identified in this article.

Impact

Medium

Details

Proprietary Code CVEs Description CVSS Base Score CVSS Vector String
CVE-2026-41118 Dell CloudLink, version(s) 8.2, contain(s) an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges. 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:LThis hyperlink is taking you to a website outside of Dell Technologies.
CVE-2026-46736 Dell CloudLink, version(s) CloudLink 8.1 and later versions, contain(s) a Missing Authorization vulnerability in the CloudLink Cluster. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access and denial of service. 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:HThis hyperlink is taking you to a website outside of Dell Technologies.
Proprietary Code CVEs Description CVSS Base Score CVSS Vector String
CVE-2026-41118 Dell CloudLink, version(s) 8.2, contain(s) an Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges. 5.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:LThis hyperlink is taking you to a website outside of Dell Technologies.
CVE-2026-46736 Dell CloudLink, version(s) CloudLink 8.1 and later versions, contain(s) a Missing Authorization vulnerability in the CloudLink Cluster. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to unauthorized access and denial of service. 7.1 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:HThis hyperlink is taking you to a website outside of Dell Technologies.
Dell Technologies recommends all customers consider both the CVSS base score and any relevant temporal and environmental scores that may impact the potential severity associated with a particular security vulnerability.

Affected Products & Remediation

Product Affected Versions Remediated Versions Link
Cloudlink for PowerFlex Rack Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Rack Drivers & Downloads
Cloudlink for PowerFlex Appliance Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Appliance Drivers & Downloads
Cloudlink for PowerFlex Software Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Software Drivers & Downloads
Product Affected Versions Remediated Versions Link
Cloudlink for PowerFlex Rack Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Rack Drivers & Downloads
Cloudlink for PowerFlex Appliance Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Appliance Drivers & Downloads
Cloudlink for PowerFlex Software Versions prior to 8.3.1 Version 8.3.1 or later PowerFlex Software Drivers & Downloads

Revision History

RevisionDateDescription
1.02026-06-18Initial release

Related Information

Affected Products

CloudLink
Article Properties
Article Number: 000477672
Article Type: Dell Security Advisory
Last Modified: 18 Jun 2026
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.