Known Vulnerabilities for products from Vmware

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Vmware".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-34424 A vulnerability was discovered in the Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) before version 5... 7.5 - HIGH 2021-11-24 2022-01-03
CVE-2021-34423 A buffer overflow vulnerability was discovered in Zoom Client for Meetings (for Android, iOS, Linux, macOS, and Windows) befo... 9.8 - CRITICAL 2021-11-24 2022-01-03
CVE-2021-32719 RabbitMQ is a multi-protocol messaging broker. In rabbitmq-server prior to version 3.8.18, when a federation link was display... 4.8 - MEDIUM 2021-06-28 2021-07-02
CVE-2021-32718 RabbitMQ is a multi-protocol messaging broker. In rabbitmq-server prior to version 3.8.17, a new user being added via managem... 5.4 - MEDIUM 2021-06-28 2021-12-10
CVE-2021-22119 Spring Security versions 5.5.x prior to 5.5.1, 5.4.x prior to 5.4.7, 5.3.x prior to 5.3.10 and 5.2.x prior to 5.2.11 are susc... 7.5 - HIGH 2021-06-29 2021-07-26
CVE-2021-22118 In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerable to... 7.8 - HIGH 2021-05-27 2021-12-07
CVE-2021-22117 RabbitMQ installers on Windows prior to version 3.8.16 do not harden plugin directory permissions, potentially allowing attac... 7.8 - HIGH 2021-05-18 2021-05-25
CVE-2021-22116 RabbitMQ all versions prior to 3.8.16 are prone to a denial of service vulnerability due to improper input validation in AMQP... 7.5 - HIGH 2021-06-08 2021-07-19
CVE-2021-22114 Addresses partial fix in CVE-2018-1263. Spring-integration-zip, versions prior to 1.0.4, exposes an arbitrary file write vuln... 5.3 - MEDIUM 2021-03-01 2021-03-09
CVE-2021-22113 Applications using the “Sensitive Headers” functionality in Spring Cloud Netflix Zuul 2.2.6.RELEASE and below may be vuln... 5.3 - MEDIUM 2021-02-23 2021-03-02
CVE-2021-22112 Spring Security 5.4.x prior to 5.4.4, 5.3.x prior to 5.3.8.RELEASE, 5.2.x prior to 5.2.9.RELEASE, and older unsupported versi... 8.8 - HIGH 2021-02-23 2021-12-08
CVE-2021-22097 In Spring AMQP versions 2.2.0 - 2.2.18 and 2.3.0 - 2.3.10, the Spring AMQP Message object, in its toString() method, will des... 6.5 - MEDIUM 2021-10-28 2021-11-01
CVE-2021-22096 In Spring Framework versions 5.3.0 - 5.3.10, 5.2.0 - 5.2.17, and older unsupported versions, it is possible for a user to pro... 4.3 - MEDIUM 2021-10-28 2021-11-29
CVE-2021-22095 In Spring AMQP versions 2.2.0 - 2.2.19 and 2.3.0 - 2.3.11, the Spring AMQP Message object, in its toString() method, will cre... 6.5 - MEDIUM 2021-11-30 2021-12-01
CVE-2021-22060 In Spring Framework versions 5.3.0 - 5.3.13, 5.2.0 - 5.2.18, and older unsupported versions, it is possible for a user to pro... 4.3 - MEDIUM 2022-01-10 2022-01-14
CVE-2021-22057 VMware Workspace ONE Access 21.08,, and 20.10 contain an authentication bypass vulnerability. A malicious actor, wh... 9.8 - CRITICAL 2021-12-20 2022-01-03
CVE-2021-22056 VMware Workspace ONE Access 21.08,, and 20.10 and Identity Manager 3.3.5, 3.3.4, and 3.3.3 contain an SSRF vulnerab... 7.5 - HIGH 2021-12-20 2022-01-03
CVE-2021-22054 VMware Workspace ONE UEM console 20.0.8 prior to, 20.11.0 prior to, 21.2.0 prior to, and 21.5.... 7.5 - HIGH 2021-12-17 2021-12-17
CVE-2021-22053 Applications using both `spring-cloud-netflix-hystrix-dashboard` and `spring-boot-starter-thymeleaf` expose a way to execute ... 8.8 - HIGH 2021-11-19 2021-11-23
CVE-2021-22051 Applications using Spring Cloud Gateway are vulnerable to specifically crafted requests that could make an extra request on d... 6.5 - MEDIUM 2021-11-08 2021-11-09

Known software with vulnerabilities from Vmware

Type Vendor Product Version
ApplicationVmwareAce 2-
ApplicationVmwareAirwatch Console9.1.0.0
ApplicationVmwareAirwatch Launcher3.2.2
ApplicationVmwareApp Volumes2.9
ApplicationVmwareCapacity Planner2.6.2.22938
ApplicationVmwareCloud Foundation-
ApplicationVmwareConsolidated Backup Framework1.5.0.2192
ApplicationVmwareConverter Enterprise Client4.0.3.62417
ApplicationVmwareData Recovery1.2.0
ApplicationVmwareEsx Server-
ApplicationVmwareFusion Pro8.0.0
ApplicationVmwareGsx Server-

