Frequency
5
occurrences
First Seen
January 23, 2026
Last Seen
February 6, 2026
Related Threat Clusters
-
CISA Identifies Critical VMware vCenter Vulnerability CVE-2024-37079 Under Active Exploitation
CISA has added the critical vulnerability CVE-2024-37079 affecting VMware vCenter Server to its Known Exploited Vulnerabilities catalog. Active exploitation of this vulnerability has been detected, impacting enterprise…
9 articles · Updated January 24, 2026 -
Exploitation of Critical VMware vCenter Server Bug CVE-2024-37079
A critical vulnerability in VMware vCenter Server, tracked as CVE-2024-37079, is being actively exploited more than a year after Broadcom issued a patch. This out-of-bounds write flaw in the DCERPC protocol has a CVSS…
2 articles · Updated January 23, 2026 -
CISA Confirms Active Exploitation of VMware ESXi CVE-2025-22225
CISA has confirmed the active exploitation of a critical vulnerability in VMware ESXi, tracked as CVE-2025-22225. This zero-day flaw allows attackers to escape security sandboxes and is currently being used in…
7 articles · Updated February 5, 2026
Recent Intelligence Reports
- CISA: Ransomware intrusions exploiting VMware ESXi bug ongoing — Scworld · February 6, 2026
- CISA: VMware ESXi flaw now exploited in ransomware attacks — Bleepingcomputer · February 4, 2026
- CISA Warns of Critical VMware vCenter RCE Vulnerability Now Exploited in Attacks — Cybersecuritynews · January 24, 2026
- Critical VMware vCenter Server bug under attack — Theregister · January 23, 2026
- Patch or die: VMware vCenter Server bug fixed in 2024 under attack today — Theregister · January 23, 2026