cbcvebase.
CVE-2026-22271
published 2026-01-23

CVE-2026-22271: Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.2.0.0, contains a Cleartext Transmission of Sensitive Information…

PriorityP342high7.5CVSS 3.1
AVNACHPRNUIRSUCHIHAH
EPSS
0.19%
9.0th percentile
Dell ECS, versions 3.8.1.0 through 3.8.1.7, and Dell ObjectScale versions prior to 4.2.0.0, contains a Cleartext Transmission of Sensitive Information vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to information exposure.

Affected

3 ranges
VendorProductVersion rangeFixed in
dellelastic_cloud_storage>= 3.8.1.0 < 4.2.0.04.2.0.0
dellobjectscale< 4.2.0.04.2.0.0
dellobjectscale>= N/A < 4.2.0.04.2.0.0
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.