vmware
950 tracked vulnerabilities.
CVE-2024-22270
HIGH
VMware Workstation/Fusion - Info Disclosure
May 14, 2024
CVSS 7.1
EPSS 0.00
CVE-2024-22269
HIGH
VMware Workstation/Fusion - Info Disclosure
May 14, 2024
CVSS 7.1
EPSS 0.00
CVE-2024-22268
HIGH
VMware Workstation/Fusion - Buffer Overflow
May 14, 2024
CVSS 7.1
EPSS 0.00
CVE-2024-22267
CRITICAL
VMware Workstation/Fusion - Use After Free
May 14, 2024
CVSS 9.3
EPSS 0.00
CVE-2024-22266
MEDIUM
VMware Avi Load Balancer - Info Disclosure
May 08, 2024
CVSS 6.5
EPSS 0.00
CVE-2024-22264
HIGH
VMware Avi Load Balancer - Privilege Escalation
May 08, 2024
CVSS 7.2
EPSS 0.00
CVE-2024-22259
HIGH
Spring Framework - Open Redirect/SSRF
Mar 16, 2024
CVSS 8.1
EPSS 0.56
CVE-2024-22256
MEDIUM
VMware Cloud Director - Info Disclosure
Mar 07, 2024
CVSS 4.3
EPSS 0.00
CVE-2024-22255
HIGH
VMware ESXi, Workstation, and Fusion - Info Disclosure
Mar 05, 2024
CVSS 7.1
EPSS 0.05
CVE-2024-22254
HIGH
VMware ESXi - Out-of-bounds Write in VMX Process
Mar 05, 2024
CVSS 7.9
EPSS 0.00
CVE-2024-22253
CRITICAL
VMware ESXi, Workstation, and Fusion - Use After Free
Mar 05, 2024
CVSS 9.3
EPSS 0.00
CVE-2024-22252
CRITICAL
VMware ESXi, Workstation, and Fusion - Use After Free
Mar 05, 2024
CVSS 9.3
EPSS 0.00
CVE-2024-22251
MEDIUM
VMware Workstation/Fusion - Info Disclosure
Feb 29, 2024
CVSS 5.9
EPSS 0.00
CVE-2024-22235
MEDIUM
VMware Aria Operations - Privilege Escalation
Feb 21, 2024
CVSS 6.7
EPSS 0.00
CVE-2024-22250
HIGH
VMware Enhanced Authentication Plug-in - Session Hijack
Feb 20, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-22245
CRITICAL
VMware Enhanced Authentication Plug-in (EAP) - Arbitrary Authentication Relay and Session Hijack
Feb 20, 2024
CVSS 9.6
EPSS 0.01
CVE-2024-22234
HIGH
Spring Security <6.1.7 & <6.2.2 - Info Disclosure
Feb 20, 2024
CVSS 7.4
EPSS 0.02
CVE-2024-22241
MEDIUM
VMware Aria Operations for Networks 6.0.0-6.11.0 - Authenticated Stored Cross-Site Scripting via Login Banner
Feb 06, 2024
CVSS 4.3
EPSS 0.04
CVE-2024-22240
MEDIUM
Aria Operations for Networks - Info Disclosure
Feb 06, 2024
CVSS 4.9
EPSS 0.01
CVE-2024-22239
MEDIUM
Aria Operations for Networks - Privilege Escalation
Feb 06, 2024
CVSS 5.3
EPSS 0.00
CVE-2024-22238
MEDIUM
VMware Aria Operations for Networks 6.0.0-6.11.0 - Stored XSS via User Profile
Feb 06, 2024
CVSS 6.4
EPSS 0.02
CVE-2024-22237
HIGH
Aria Operations for Networks - Privilege Escalation
Feb 06, 2024
CVSS 7.8
EPSS 0.00
CVE-2024-22236
LOW
Spring Cloud Contract <4.1.1, <4.0.5, <3.1.10 - Info Disclosure
Jan 31, 2024
CVSS 3.3
EPSS 0.00
CVE-2024-22233
HIGH
Spring Framework <6.0.15-6.1.2 - DoS
Jan 22, 2024
CVSS 7.5
EPSS 0.02
CVE-2023-34042
MEDIUM
Spring Security - Incorrect Permission
Feb 05, 2024
CVSS 4.1
EPSS 0.00
Products
workstation 213
esxi 139
cloud_foundation 132
fusion 131
player 89
esx 86
vcenter_server 79
server 58
spring_framework 48
ace 44
identity_manager 28
workstation_pro 27
workstation_player 26
horizon_client 25
spring_security 24
Workstation 23
tools 22
vrealize_suite_lifecycle_manager 21
vrealize_automation 20
spring_boot 18
vrealize_operations 18
ESXi 16
vmware_workstation 15
vrealize_log_insight 15
workspace_one_access 15
horizon_view 14
spring_ai 14
vcenter_server_appliance 14
Fusion 13
aria_operations 13
Quick Filters