VMWare Products Multiple Vulnerabilities
RISK: Extremely High Risk
TYPE: Operating Systems - VM Ware

Multiple vulnerabilities were identified in VMware products. A remote attacker could exploit some of these vulnerabilities to trigger elevation of privilege, cross-site scripting and remote code execution on the targeted system.
Note: CVE-2026-22719 is being exploited in the wild. A malicious unauthenticated actor may exploit this vulnerability to execute arbitrary commands, which may lead to remote code execution in VMware Aria Operations while support-assisted product migration is in progress. Hence, the risk level is rated as Extremely High Risk.
[Updated on 2026-03-04]
Updated Risk Level, Description and Related Links.
Impact
- Cross-Site Scripting
- Remote Code Execution
- Elevation of Privilege
System / Technologies affected
- VMware Aria Operations 8.x
- VMware Cloud Foundation 4.x, 5.x, 9.x.x.x
- VMware Telco Cloud Platform 4.x, 5.x
- VMware Telco Cloud Infrastructure 2.x, 3.x
- VMware vSphere Foundation 9.x.x.x
Solutions
Before installation of the software, please visit the vendor web-site for more details.
- Apply fixes issued by the vendor:
- https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36947
Vulnerability Identifier
Source
Related Link
Related Tags
Share with
