VMware
VMware security: ESXi, vCenter and virtualization vulnerabilities, attack reports and security updates. Read each report for the affected versions and mitigations.
Latest report:
Matching reports 4
VMware Workstation and Fusion: Two Flaws Allow Escape from the Virtual Machine
Broadcom fixed two critical VMware Workstation and Fusion flaws allowing VM escape to host. Upgrade to 26H1u1 to patch CVE-2026-59346, CVE-2026-59347.
Four Critical Vulnerabilities Exploited Against macOS, SharePoint, VMware vCenter, and Windows
CISA has added four actively exploited critical vulnerabilities to its Known Exploited Vulnerabilities KEV catalog. The flaws affect Apple macOS,
VMware vCenter Under Attack: CVE-2026-59310 Enables Persistent Access
CVE-2026-59310 exploitation in VMware vCenter allows persistent access via cron jobs and reverse_ssh. Apply patches to mitigate.
VMware patches critical flaws: VM escape and risk of total control of the virtual infrastructure
Broadcom patched critical VMware flaws in ESXi and vCenter. Updates fix severe VM escape and RCE flaws risking total virtual infrastructure control.
How this coverage is selected
Articles are selected by explicit entity names or reviewed aliases in their original headlines, within the last 365 days. This is a chronology of our reporting, not a complete incident history. Separate stories do not imply a shared attack campaign. Read each article for its sources, affected versions and uncertainties.



