cbcvebase.
CVE-2021-22033
published 2021-10-13

CVE-2021-22033: Releases prior to VMware vRealize Operations 8.6 contain a Server Side Request Forgery (SSRF) vulnerability.

low2.7CVSS 3.1
AVNACLPRHUINSUCLINAN
Releases prior to VMware vRealize Operations 8.6 contain a Server Side Request Forgery (SSRF) vulnerability.

Affected

3 ranges
VendorProductVersion rangeFixed in
vmwarecloud_foundation3.0.0 – 4.3.1
vmwarevrealize_operations>= 7.0.0 < 8.6.08.6.0
vmwarevrealize_suite_lifecycle_manager8.0 – 8.2