Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

VMware — Vulnerabilities & Security Advisories 241

Browse all 241 CVE security advisories affecting VMware. AI-powered Chinese analysis, POCs, and references for each vulnerability.

VMware operates as a leading provider of cloud computing and virtualization platforms, enabling enterprises to manage data centers and deploy software-defined infrastructure. With 219 recorded CVEs, its attack surface reflects the complexity of managing hypervisors and management interfaces. Historically, vulnerabilities have frequently involved remote code execution, cross-site scripting, and privilege escalation, often stemming from improper input validation or authentication bypasses in web-based management consoles. Notable incidents include critical flaws in vCenter Server and ESXi that allowed attackers to gain unauthorized administrative access or execute arbitrary commands on host systems. These exploits underscore the risks associated with centralized management tools, where a single compromise can impact entire virtualized environments. The high volume of vulnerabilities highlights the necessity for rigorous patch management and secure configuration practices to mitigate potential breaches in enterprise infrastructure.

Found 11 results / 241 Clear Filters
CVE ID Title CVSS Severity Published
CVE-2026-22721 VMware Aria Operations privilege escalation vulnerability — VMware Aria Operations CWE-269 6.2 Medium 2026-02-25
CVE-2026-22720 VMware Aria Operations stored cross-site scripting vulnerability — VMware Aria Operations CWE-79 8.0 High 2026-02-25
CVE-2026-22719 VMware Aria Operations command injection vulnerability — VMware Aria Operations 8.1 High 2026-02-25
CVE-2025-41245 VMSA-2025-0015: VMware Aria Operations and VMware Tools updates address multiple vulnerabilities (CVE-2025-41244,CVE-2025-41245, CVE-2025-41246) — VMware Aria Operations CWE-1188 4.9 Medium 2025-09-29
CVE-2025-22231 VMware Aria Operations updates address a local privilege escalation vulnerability (CVE-2025-22231) — VMware Aria operations 7.8 High 2025-04-01
CVE-2025-22222 VMware Aria Operations information disclosure vulnerability (CVE-2025-22222) — VMware Aria Operations 7.7 High 2025-01-30
CVE-2024-38834 Stored cross-site scripting vulnerability (CVE-2024-38834) — VMware Aria Operations 6.5 Medium 2024-11-26
CVE-2024-38833 Stored cross-site scripting vulnerability (CVE-2024-38833) — VMware Aria Operations 6.8 Medium 2024-11-26
CVE-2024-38832 Stored cross-site scripting vulnerability (CVE-2024-38832) — VMware Aria Operations 7.1 High 2024-11-26
CVE-2024-38831 Local privilege escalation vulnerability (CVE-2024-38831) — VMware Aria Operations 7.8 High 2024-11-26
CVE-2024-38830 Local privilege escalation vulnerability — VMware Aria Operations 7.8 High 2024-11-26

This page lists every published CVE security advisory associated with VMware. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.