Known Vulnerabilities for Workspace One by Vmware
Listed below are 1 of the newest known vulnerabilities associated with "Workspace One" by "Vmware".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-102806 json | OpenClaw before 2026.9.5 contains an incorrect authorization vulnerability in the Gateway's local media root allowlist that b... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-102437 json | OS Command Injection in internal/gitcmd (git diff filter.clean/smudge invocation) in esengine DeepSeek-Reasonix (Reasonix Stu... | Not Provided | 2026-09-29 | 2026-09-29 |
| CVE-2026-101043 json | pnpm versions 11.0.0 before 11.11.0 and 10.7.0 before 10.34.5 expand ${VAR} environment-variable placeholders in the httpProx... | Not Provided | 2026-09-27 | 2026-09-30 |
| CVE-2026-100686 json | Budibase versions before 3.45.0 fail to validate per-app authorization in the POST /api/global/groups/:groupId/apps endpoint,... | Not Provided | 2026-09-26 | 2026-09-30 |
| CVE-2026-100685 json | Budibase before 3.45.0 fails to properly scope the GET /api/chat-links endpoint by workspace, allowing builders to enumerate ... | Not Provided | 2026-09-26 | 2026-09-30 |
| CVE-2026-100642 json | SiYuan versions from v2.1.0 before v3.8.4 contain a cross-site request forgery vulnerability in the CheckAuth lock-screen pas... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100641 json | SiYuan before v3.8.4 does not HTML-escape stored flashcard block content before interpolating it into the card-manager list m... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100638 json | SiYuan versions before v3.8.4 contain a path traversal vulnerability in the setNotebookIcon endpoint that allows authenticate... | Not Provided | 2026-09-26 | 2026-09-30 |
| CVE-2026-100637 json | SiYuan versions before v3.8.4 contain a path traversal vulnerability in the checkoutRepo endpoint that allows authenticated a... | Not Provided | 2026-09-26 | 2026-09-26 |
| CVE-2026-100636 json | SiYuan versions before v3.8.4 contain a path traversal vulnerability in the exportBrowserHTML endpoint that allows authentica... | Not Provided | 2026-09-26 | 2026-09-28 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Vmware | Workspace One | 4.9.3 | |||
| Application | Vmware | Workspace One | 4.9.2 | |||
| Application | Vmware | Workspace One | 4.9.1 | |||
| Application | Vmware | Workspace One | 4.9 | |||
| Application | Vmware | Workspace One | 4.6 | |||
| Application | Vmware | Workspace One | 4.3.1 | |||
| Application | Vmware | Workspace One | 4.3 | |||
| Application | Vmware | Workspace One | 4.19.2 | |||
| Application | Vmware | Workspace One | 4.19 | |||
| Application | Vmware | Workspace One | 4.18.1 | |||
| Application | Vmware | Workspace One | 4.18 | |||
| Application | Vmware | Workspace One | 4.17.1 | |||
| Application | Vmware | Workspace One | 4.17 | |||
| Application | Vmware | Workspace One | 4.16.1 | |||
| Application | Vmware | Workspace One | 4.16 | |||
| Application | Vmware | Workspace One | 4.15 | |||
| Application | Vmware | Workspace One | 4.14 | |||
| Application | Vmware | Workspace One | 4.13.3 | |||
| Application | Vmware | Workspace One | 4.13.2 | |||
| Application | Vmware | Workspace One | 4.13.1 |