Known Vulnerabilities for products from Vmware
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Vmware".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-67261 json | Not Provided | 2026-08-06 | 2026-08-06 | |
| CVE-2026-59354 json | In versions of Spring Security's OAuth2 Authorization Server module 7.0.0 through 7.0.4, when Dynamic Client Registration is ... | Not Provided | 2026-08-27 | 2026-09-01 |
| CVE-2026-59324 json | When an IntegrationFlow uses .fluxTransform() with an asynchronous/reordering fluxFunction that emits raw payloads, concurren... | Not Provided | 2026-08-27 | 2026-09-01 |
| CVE-2026-59322 json | The EmbeddedHeadersJsonMessageMapper defaults to an overly permissive header parsing posture in its constructor. When decodeN... | Not Provided | 2026-08-27 | 2026-09-01 |
| CVE-2026-59321 json | A single ScriptEngine instance is reused for every message on a script-backed channel. For JSR-223 engines that report THREAD... | Not Provided | 2026-08-27 | 2026-08-31 |
| CVE-2026-59320 json | When a container-level ErrorHandler is configured (the mitigation for finding 221000), each delivery whose processing throws ... | Not Provided | 2026-08-27 | 2026-08-31 |
| CVE-2026-59319 json | RedisChatMemoryRepository.findByMetadata() builds RediSearch tag and text queries from caller-supplied metadata values withou... | Not Provided | 2026-08-27 | 2026-08-31 |
| CVE-2026-59317 json | DeadLetterPublishingRecovererFactory reads the retry_topic-original-timestamp header from an inbound ConsumerRecord and passe... | Not Provided | 2026-08-27 | 2026-09-04 |
| CVE-2026-59315 json | The Spring Cloud Config Monitor is susceptible to Denial of Service attacks via malicious payloads. Spring Cloud Config 5.0.0... | Not Provided | 2026-08-27 | 2026-08-31 |
| CVE-2026-59314 json | Applications that build a Content-Disposition header value from untrusted input may be vulnerable to HTTP response splitting ... | Not Provided | 2026-08-27 | 2026-09-01 |
| CVE-2026-59313 json | Spring MVC applications using the functional web framework are vulnerable to stream corruption when using Server-Sent Events ... | Not Provided | 2026-08-27 | 2026-08-31 |
| CVE-2026-59311 json | A local unprivileged user on the same host can redirect all Zip/UnZip transformer output into a directory of their choosing b... | Not Provided | 2026-08-27 | 2026-08-31 |
| CVE-2026-59310 json | VMware vCenter contains a directory traversal vulnerability in the Syslog server. A malicious actor with network access to v... | Not Provided | 2026-07-30 | 2026-08-19 |
| CVE-2026-59309 json | Not Provided | 2026-07-30 | 2026-07-30 | |
| CVE-2026-59307 json | An operator who calls JdbcMessageStore.addAllowedPatterns(...) to restrict deserialization receives no protection at all when... | Not Provided | 2026-08-27 | 2026-08-31 |
| CVE-2026-59306 json | Potential for deserialization of untrusted types in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Strea... | Not Provided | 2026-08-27 | 2026-09-04 |
| CVE-2026-59305 json | Partition interceptor may be improperly added while sending message. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Stream 4.... | Not Provided | 2026-08-27 | 2026-09-04 |
| CVE-2026-59304 json | Improper caching of the original content type in Spring Cloud Stream Avro. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud Str... | Not Provided | 2026-08-27 | 2026-09-04 |
| CVE-2026-59303 json | Dynamic destination cache size is not properly bound in Spring Cloud Stream. Spring Cloud Stream 5.0.0 - 5.0.2 Spring Cloud S... | Not Provided | 2026-08-27 | 2026-09-04 |
| CVE-2026-59301 json | Potential for logging sensitive data in Spring Cloud Function Azure. Spring Cloud Function 5.0.0 - 5.0.3 Spring Cloud Functio... | Not Provided | 2026-08-27 | 2026-09-04 |
Known software with vulnerabilities from Vmware
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Vmware | Ace | - |
| Application | Vmware | Ace 2 | - |
| Application | Vmware | Airwatch | 7.3.0.0 |
| Application | Vmware | Airwatch Console | 9.1.0.0 |
| Application | Vmware | Airwatch Launcher | 3.2.2 |
| Application | Vmware | App Volumes | 2.10 |
| Application | Vmware | Capacityiq | 1.0.0 |
| Application | Vmware | Capacity Planner | 2.6.2.22938 |
| Application | Vmware | Cloud Foundation | - |
| Application | Vmware | Consolidated Backup Framework | 1.5.0.2192 |
| Application | Vmware | Converter | 1.0.0 |
| Application | Vmware | Converter Enterprise Client | 4.0.3.62417 |
| Application | Vmware | Data Recovery | 1.2.0 |
| Operating System | Vmware | Esx | - |
| Operating System | Vmware | Esxi | 3.5 |
| Application | Vmware | Esx Server | - |
| Application | Vmware | Fusion | - |
| Application | Vmware | Fusion Pro | 8.0.0 |
| Application | Vmware | Gemfire | 9.7.0 |
| Application | Vmware | Gsx Server | - |