Known Vulnerabilities for Infrastructure by Vmware
Listed below are 2 of the newest known vulnerabilities associated with "Infrastructure" by "Vmware".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-100578 json | OpenClaw (npm package `openclaw`) before 2026.7.1 fails to restrict owner-only infrastructure tools exposed through the chat.... | Not Provided | 2026-09-26 | 2026-09-28 |
| CVE-2026-100567 json | OpenClaw is an agent gateway distributed as the npm package 'openclaw'. In versions >= 2026.4.5 and < 2026.8.1, the Gateway v... | Not Provided | 2026-09-26 | 2026-09-28 |
| CVE-2026-100177 json | The AIL Framework crawler task creation API (api_add_crawler_task) contained an insufficient authorization check when a user ... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-97526 json | In the Linux kernel, the following vulnerability has been resolved: s390/pai: Support CPU hotplug for PMU PAI The command '... | Not Provided | 2026-09-25 | 2026-09-25 |
| CVE-2026-93453 json | SOGo before 5.12.11 constructs password-reset links using the client-supplied Origin header as the authority, allowing unauth... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-93338 json | Grandstream GWN7660ELR before firmware version 1.0.27.6 contains an information disclosure vulnerability that allows unauthen... | Not Provided | 2026-09-18 | 2026-09-18 |
| CVE-2026-92750 json | Harness through 3.3.0 omits access control validation in the infrastructure provider read endpoint, allowing authenticated us... | Not Provided | 2026-09-16 | 2026-09-17 |
| CVE-2026-91921 json | Cross-Site Scripting (XSS) vulnerability due to inadequate input sanitisation in the client-side rendering engine of the 1mil... | Not Provided | 2026-09-21 | 2026-09-21 |
| CVE-2026-90999 json | Sentry Seer is vulnerable to a multi-stage trust-boundary violation that allows unauthenticated attacker-controlled telemetry... | Not Provided | 2026-09-16 | 2026-09-18 |
| CVE-2026-90408 json | In the Linux kernel, the following vulnerability has been resolved: wifi: ath12k: fix overreads in ath12k_wmi_process_csa_sw... | Not Provided | 2026-09-17 | 2026-09-18 |