CVE-2026-74768

Dell PowerProtect Data Manager, versions 20.2.0.0 and below, contain a Server-Side Request Forgery (SSRF) vulnerability in the REST API. A high privileged remote attacker could potentially exploit this vulnerability, leading to Information disclosure.

  • Published Sep 3, 2026
  • CVSS 4.1 medium
  • 0.4% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-74768 at the National Vulnerability Database