Critical Vulnerabilities in VMware Products Require Immediate Patching

Critical Vulnerabilities in VMware Products Require Immediate Patching

First seen 29 Jul 2026, 13:47 UTC Digital.Nhs.Uksupport.broadcom.comwww.cve.org 88% similarity 79.5

Article Content

Browse articles
ThreatCluster

Broadcom has released VMSA-2026-0006 addressing multiple critical vulnerabilities in VMware ESX, vCenter, Workstation, and Fusion. The vulnerabilities, including CVE-2026-59309 and CVE-2026-59310, could allow arbitrary code execution and authentication bypass. Affected systems include VMware vCenter Server, VMware Workstation, and VMware Cloud Foundation. Organizations are urged to apply the patches immediately to mitigate risks. The vulnerabilities were privately reported and have been assigned a maximum CVSSv3 base score of 9.8. Failure to patch could lead to unauthorized access and potential data breaches. Broadcom acknowledged the researchers who reported these issues. The advisory emphasizes the urgency of applying the updates.

Key Points: • Multiple critical vulnerabilities in VMware products require immediate patching. • CVE-2026-59309 and CVE-2026-59310 have a CVSS score of 9.8, indicating high severity. • Affected systems include VMware ESX, vCenter, Workstation, and Fusion.

ThreatCluster AI How this analysis works

Timeline

2026-07-29
Broadcom releases VMSA-2026-0006
Security advisory published addressing critical vulnerabilities in VMware products, urging immediate patch application.
support.broadcom.com
2026-07-29
Digital NHS alerts organizations
Digital NHS issues a warning about the vulnerabilities, advising affected organizations to review the advisory and apply updates.
Digital.Nhs.Uk

Community

Browse all →