Various VMware products vulnerable due to multiple security flaws

VMware Cloud Foundation, among others, is vulnerable. Admins should install the available security updates.

listen Print view
A symbolic update reminder.

(Image: Artur Szczybylo / Shutterstock.com)

1 min. read

Three security vulnerabilities in VMware Aria Operations and Cloud Foundation Operations are endangering PCs. Because Cloud Foundation, Telco Cloud Platform, Telco Cloud Infrastructure, and vSphere Foundation use the vulnerable software, they are also vulnerable. In the worst case, attackers can execute malicious code.

In a warning message, the developers list further information on the vulnerabilities that have now been closed (CVE-2026-22719 “high,” CVE-2026-22720 “high,” CVE-2026-22721 “medium”). After successful attacks, malicious code can get onto systems, among other things.

Videos by heise

The developers assure that the security problems in the versions VMware Cloud Foundation, VMware vSphere Foundation 9.0.2.0, and VMware Aria Operations 8.18.6 have been resolved. For VMware Cloud Foundation, VMware Telco Cloud Platform, and VMware Telco Cloud Infrastructure, admins must protect systems from possible attacks using workarounds.

(des)

Don't miss any news – follow us on Facebook, LinkedIn or Mastodon.

This article was originally published in German. It was translated with technical assistance and editorially reviewed before publication.