CVE-2026-41703
- EPSS 0.56%
- Veröffentlicht 30.07.2026 12:39:02
- Zuletzt bearbeitet 30.07.2026 16:17:11
VMware ESX, Workstation, and Fusion contain an out-of-bounds read vulnerability. A malicious actor with VM deployment privileges could trigger an out-of-bounds read, potentially leading to information disclosure or more likely a Denial-of-Service (Do...
- EPSS 0.16%
- Veröffentlicht 27.02.2026 19:16:07
- Zuletzt bearbeitet 15.04.2026 00:35:42
Out-of-bound write vulnerability in VMware Workstation 25H1 and below on any platform allows an actor with non-administrative privileges on a guest VM to terminate certain Workstation processes.
CVE-2026-22717
- EPSS 0.17%
- Veröffentlicht 27.02.2026 19:11:54
- Zuletzt bearbeitet 15.04.2026 00:35:42
Out-of-bound read vulnerability in VMware Workstation 25H1 and below on any platform allows an actor with non-administrative privileges on a guest VM to obtain limited information disclosure from the machine where VMware Workstation is installed.
CVE-2026-22722
- EPSS 0.15%
- Veröffentlicht 26.02.2026 18:35:20
- Zuletzt bearbeitet 15.04.2026 00:35:42
A malicious actor with authenticated user privileges on a Windows based Workstation host may be able to cause a null pointer dereference error. To Remediate CVE-2026-22722, apply the patches listed in the "Fixed version" column of the 'Response Matri...
CVE-2026-22715
- EPSS 0.2%
- Veröffentlicht 26.02.2026 18:29:14
- Zuletzt bearbeitet 15.04.2026 00:35:42
VMWare Workstation and Fusion contain a logic flaw in the management of network packets. Known attack vectors: A malicious actor with administrative privileges on a Guest VM may be able to interrupt or intercept network connections of other Guest V...
CVE-2025-41239
- EPSS 2.15%
- Veröffentlicht 15.07.2025 18:35:03
- Zuletzt bearbeitet 15.04.2026 00:35:42
VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of an uninitialised memory in vSockets. A malicious actor with local administrative privileges on a virtual machine may be able to ex...
CVE-2025-41238
- EPSS 0.39%
- Veröffentlicht 15.07.2025 18:34:48
- Zuletzt bearbeitet 15.04.2026 00:35:42
VMware ESXi, Workstation, and Fusion contain a heap-overflow vulnerability in the PVSCSI (Paravirtualized SCSI) controller that leads to an out of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit t...
CVE-2025-41237
- EPSS 0.39%
- Veröffentlicht 15.07.2025 18:34:21
- Zuletzt bearbeitet 15.04.2026 00:35:42
VMware ESXi, Workstation, and Fusion contain an integer-underflow in VMCI (Virtual Machine Communication Interface) that leads to an out-of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this iss...
CVE-2025-41236
- EPSS 2.16%
- Veröffentlicht 15.07.2025 18:34:12
- Zuletzt bearbeitet 15.04.2026 00:35:42
VMware ESXi, Workstation, and Fusion contain an integer-overflow vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a virtual machine with VMXNET3 virtual network adapter may exploit this i...
CVE-2025-41227
- EPSS 0.16%
- Veröffentlicht 20.05.2025 14:24:29
- Zuletzt bearbeitet 15.04.2026 00:35:42
VMware ESXi, Workstation, and Fusion contain a denial-of-service vulnerability due to certain guest options. A malicious actor with non-administrative privileges within a guest operating system may be able to exploit this issue by exhausting memory o...