CRITICALVulnerability
Global

Three Critical VMware Flaws Allow Auth Bypass, Code Execution, and VM Escape

·Source: The Hacker News

Updated:

Executive Summary

Broadcom has released security updates to address multiple security flaws impacting VMware ESX, vCenter, Workstation, and Fusion, three of which have been designated as critical in severity. The first of the three critical-rated flaws is CVE-2026-59309 (CVSS score: 9.8), which has been described as an authentication bypass in VMware vCenter. "A malicious actor with network access to vCenter

Analysis

Broadcom has released security updates to address multiple security flaws impacting VMware ESX, vCenter, Workstation, and Fusion, three of which have been designated as critical in severity. The first of the three critical-rated flaws is CVE-2026-59309 (CVSS score: 9.8), which has been described as an authentication bypass in VMware vCenter. "A malicious actor with network access to vCenter

Indicators of Compromise (1)

CVE (1)
CVE-2026-59309
Source Attribution

Originally published by The Hacker News on Jul 29, 2026.

Related Threats