CyberSecurity News
Three Critical VMware Flaws Allow Auth Bypass, Code Execution, and VM Escape
AI summary
Broadcom has issued security updates for several VMware products, including ESX, vCenter, Workstation, and Fusion, to fix multiple security vulnerabilities. Three of these vulnerabilities are considered critical, with one being an authentication bypass flaw in VMware vCenter. This particular flaw, designated as CVE-2026-59309, has a high CVSS score of 9.8. A malicious actor with network access to vCenter can potentially exploit this flaw. The other two critical vulnerabilities allow for code execution and VM escape, although details about these are not specified. These updates address significant security risks in the affected VMware products.
This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.

