Skip to content

CVE-2026-59309

CVE

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
August 18, 2026
Last Seen
September 15, 2026
API
Exploited in Wild
—
Ransomware Use
—
Public Exploits
—
Attack Vector
—

Vulnerability Overview

Exploitation Activity

Exploitation Intelligence

A critical vulnerability in VMware vCenter, tracked as CVE-2026-59310, is being actively exploited, allowing attackers to execute arbitrary code via a path traversal flaw in the Syslog Server. This vulnerability, disclosed on July 30, 2026, was added to CISA's Known Exploited Vulnerabilities Catalog...

On September 15, 2026, CISA confirmed that ransomware gangs are actively exploiting a critical remote code execution vulnerability in VMware vCenter Server, tracked as CVE-2026-59310, which has a CVSS score of 9.8. This flaw, residing in the vCenter Syslog server, allows unauthenticated attackers wi...

Public Exploits

Checking GitHub for proof-of-concept code…