Known Vulnerabilities for Tools by Vmware
Listed below are 10 of the newest known vulnerabilities associated with "Tools" by "Vmware".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-71289 json | The NASA-AMMOS Asynchronous Network Management System (ANMS) reference implementation's default docker-compose.yml publishes ... | Not Provided | 2026-08-05 | 2026-08-05 |
| CVE-2026-70493 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.9.6 until 0.11.0, the built-in k... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-70491 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. In 0.10.2 and earlier, the GET /api/v1/... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-70487 json | Open WebUI is an extensible, feature-rich, and user-friendly self-hosted AI platform. From 0.8.8 until 0.11.0, inline direct ... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-69263 json | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the mitigation for C... | Not Provided | 2026-08-04 | 2026-08-04 |
| CVE-2026-68494 json | The fix released in jackson-core 2.18.6 and 2.21.1 for CVE-2026-18401 (GHSA-72hv-8253-57qq, number length constraint bypass i... | Not Provided | 2026-08-04 | 2026-08-05 |
| CVE-2026-67531 json | FrontMCP is a TypeScript-first framework for the Model Context Protocol (MCP). Prior to 1.5.7, the sandboxed codecall:execute... | Not Provided | 2026-08-06 | 2026-08-06 |
| CVE-2026-67431 json | MCP Ruby SDK is the official Ruby SDK for Model Context Protocol servers and clients. Prior to 0.23.0, MCP::Server::Transport... | Not Provided | 2026-07-29 | 2026-07-30 |
| CVE-2026-66012 json | SiYuan before v3.7.2 contains a missing authorization vulnerability in the POST /mcp kernel endpoint, which is gated only by ... | Not Provided | 2026-07-25 | 2026-07-28 |
| CVE-2026-66005 json | Jan through 0.8.4, fixed in commit 3e1c1e7, contains a CORS misconfiguration vulnerability in its local API server that allow... | Not Provided | 2026-07-24 | 2026-07-25 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Vmware | Tools | 9.4.5 | |||
| Application | Vmware | Tools | 9.4.15 | |||
| Application | Vmware | Tools | 9.4.12 | |||
| Application | Vmware | Tools | 9.4.11 | |||
| Application | Vmware | Tools | 9.4.10 | |||
| Application | Vmware | Tools | 9.4.0 | |||
| Application | Vmware | Tools | 9.10.5 | |||
| Application | Vmware | Tools | 9.10.1 | |||
| Application | Vmware | Tools | 9.10.0 | |||
| Application | Vmware | Tools | 9.0.5 | |||
| Application | Vmware | Tools | 9.0.17 | |||
| Application | Vmware | Tools | 9.0.16 | |||
| Application | Vmware | Tools | 9.0.15 | |||
| Application | Vmware | Tools | 9.0.13 | |||
| Application | Vmware | Tools | 9.0.12 | |||
| Application | Vmware | Tools | 9.0.11 | |||
| Application | Vmware | Tools | 9.0.10 | |||
| Application | Vmware | Tools | 9.0.1 | |||
| Application | Vmware | Tools | 9.0.0 | |||
| Application | Vmware | Tools | 8.8.1.9139 |