HackerFeeds

CyberSecurity News

Three Critical VMware Flaws Allow Auth Bypass, Code Execution, and VM Escape

The Hacker News
· July 29, 2026

AI summary

Broadcom has issued security updates for several VMware products, including ESX, vCenter, Workstation, and Fusion, to fix multiple security vulnerabilities. Three of these vulnerabilities are considered critical, with one being an authentication bypass flaw in VMware vCenter. This particular flaw, designated as CVE-2026-59309, has a high CVSS score of 9.8. A malicious actor with network access to vCenter can potentially exploit this flaw. The other two critical vulnerabilities allow for code execution and VM escape, although details about these are not specified. These updates address significant security risks in the affected VMware products.

Read the full article at The Hacker Newsthehackernews.com/2026/07/three-critical-vmware-flaws-allow-auth.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.