Known Vulnerabilities for VCF Operations by VMware
Listed below are 10 of the newest known vulnerabilities associated with "VCF Operations" by "VMware".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-82287 json | Rybbit before 2.7.0 contains a CORS misconfiguration vulnerability that allows attackers to bypass origin restrictions by ref... | Not Provided | 2026-08-28 | 2026-08-28 |
| CVE-2026-82277 json | Argo Rollouts dashboard through 1.10.0 binds to all interfaces and exposes mutating Rollout operations without authentication... | Not Provided | 2026-08-28 | 2026-08-28 |
| CVE-2026-82267 json | Komodo through 2.3.2 discloses internal resource identifiers and writes audit entries before performing permission checks in ... | Not Provided | 2026-08-28 | 2026-08-28 |
| CVE-2026-82254 json | gitoxide before 0.69.0 contains unchecked array indexing in delta application and uncapped allocation from attacker-controlle... | Not Provided | 2026-08-28 | 2026-08-28 |
| CVE-2026-82250 json | gitoxide gix-packetline versions before 0.21.5 contain a panic vulnerability in the TextRef implementation that occurs when p... | Not Provided | 2026-08-28 | 2026-08-28 |
| CVE-2026-81817 json | Affected versions of Flowintel contain an insecure direct object reference / broken object-level authorization issue across n... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81730 json | Dolibarr 9.0.0 through 23.0.4 saves inbound email attachments under the name supplied in the message's MIME headers without r... | Not Provided | 2026-08-27 | 2026-08-28 |
| CVE-2026-81726 json | NLTK through 3.10.3 contains a path traversal vulnerability in model-artifact APIs that bypass pathsec enforcement by using r... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81686 json | openssl_encrypt 1.4.x before 1.4.9 contains an optional D-Bus crypto service whose org.freedesktop.DBus.Properties.Set method... | Not Provided | 2026-08-27 | 2026-08-27 |
| CVE-2026-81685 json | openssl_encrypt versions before 1.4.9 fail to sanitize recovery-slot metadata in the desktop GUI, allowing attackers to injec... | Not Provided | 2026-08-27 | 2026-08-27 |