Hypervisors & Cloud Virtualization5 Active Advisories Tracked

VMware / Broadcom Vulnerability & Threat Radar

Critical security flaws in VMware ESXi hypervisors, vCenter Server, and Cloud Foundation infrastructure.

Recommended Protective Controls for VMware / Broadcom Environments

Deploy continuous behavioral telemetry and micro-segmentation boundaries to shield VMware / Broadcom assets.

Evaluate Recommended Defenses →

Recent Disclosures & Advisories

5 Critical Severity
CISA KEV
8/18/2026

Broadcom VMware vCenter Path Traversal Vulnerability

Broadcom VMware vCenter contains a path traversal vulnerability which could allow a threat actor with network access to vCenter to execute arbitrary code. This is a critical threat mapped to CVE-2026-59310; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
3/9/2026

Omnissa Workspace ONE Server-Side Request Forgery

Omnissa Workspace One UEM formerly known as VMware Workspace One UEM contains a server-side request forgery (SSRF) vulnerability that could allow a malicious actor with network access to UEM to send their requests without authentication and to gain access to sensitive information. This is a critical threat mapped to...

CISA KEV
3/3/2026

Broadcom VMware Aria Operations Command Injection Vulnerability

Broadcom VMware Aria Operations formerly known as vRealize Operations (vROps) contains a command injection vulnerability that allows an unauthenticated attacker to execute arbitrary commands, potentially leading to remote code execution during support‑assisted product migration. This is a critical threat mapped to C...

CISA KEV
1/23/2026

Broadcom VMware vCenter Server Out-of-bounds Write Vulnerability

Broadcom VMware vCenter Server contains an out-of-bounds write vulnerability in the implementation of the DCERPC protocol. This is a critical threat mapped to CVE-2024-37079; security leaders should validate exposure, prioritize patching, and verify compensating controls.

CISA KEV
10/30/2025

Broadcom VMware Aria Operations and VMware Tools Privilege Defined with Unsafe Actions Vulnerability

Broadcom VMware Aria Operations and VMware Tools contain a privilege defined with unsafe actions vulnerability. This is a critical threat mapped to CVE-2025-41244; security leaders should validate exposure, prioritize patching, and verify compensating controls.

Share Intel:Share on XLinkedIn

Never Miss a Critical VMware / Broadcom Patch

Subscribe to the SecOps Pulse executive threat briefing for early warnings on unpatched vulnerabilities.

Weekly Executive Briefing

Top critical & high-severity threats, every week.

No spam. Unsubscribe anytime. SecOpsPulse may include sponsored security tool recommendations.