Oracle Vm Virtualbox vulnerabilities

408 known vulnerabilities affecting oracle/vm_virtualbox.

Total CVEs
408
CISA KEV
1
actively exploited
Public exploits
21
Exploited in wild
1
Severity breakdown
CRITICAL5HIGH190MEDIUM163LOW50

Vulnerabilities

Page 2 of 21
CVE-2025-62592MEDIUMCVSS 6.0v7.1.12v7.2.22025-10-21
CVE-2025-62592 [MEDIUM] CWE-269 CVE-2025-62592: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.12 and 7.2.2. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is i
nvd
CVE-2025-62591MEDIUMCVSS 6.0v7.1.12v7.2.22025-10-21
CVE-2025-62591 [MEDIUM] CWE-267 CVE-2025-62591: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.12 and 7.2.2. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is i
nvd
CVE-2025-61759MEDIUMCVSS 6.5v7.1.12v7.2.22025-10-21
CVE-2025-61759 [MEDIUM] CWE-269 CVE-2025-61759: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are 7.1.12 and 7.2.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in
nvd
CVE-2025-53027HIGHCVSS 8.2v7.1.102025-07-15
CVE-2025-53027 [HIGH] CWE-269 CVE-2025-53027: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM
nvd
CVE-2025-53028HIGHCVSS 8.2v7.1.102025-07-15
CVE-2025-53028 [HIGH] CWE-284 CVE-2025-53028: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM
nvd
CVE-2025-53024HIGHCVSS 8.2v7.1.102025-07-15
CVE-2025-53024 [HIGH] CWE-269 CVE-2025-53024: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM
nvd
CVE-2025-53030MEDIUMCVSS 6.0v7.1.102025-07-15
CVE-2025-53030 [MEDIUM] CWE-269 CVE-2025-53030: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle V
nvd
CVE-2025-53025MEDIUMCVSS 6.0v7.1.102025-07-15
CVE-2025-53025 [MEDIUM] CWE-269 CVE-2025-53025: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle V
nvd
CVE-2025-53026MEDIUMCVSS 6.0v7.1.102025-07-15
CVE-2025-53026 [MEDIUM] CWE-269 CVE-2025-53026: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle V
nvd
CVE-2025-53029LOWCVSS 2.3v7.1.102025-07-15
CVE-2025-53029 [LOW] CWE-269 CVE-2025-53029: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.10. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability
nvd
CVE-2025-30712HIGHCVSS 8.1v7.1.62025-04-15
CVE-2025-30712 [HIGH] CWE-190 CVE-2025-30712: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle VM V
nvd
CVE-2025-30725MEDIUMCVSS 6.7v7.1.62025-04-15
CVE-2025-30725 [MEDIUM] CWE-400 CVE-2025-30725: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.6. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerability is in Oracle
nvd
CVE-2025-30719MEDIUMCVSS 6.1v7.1.62025-04-15
CVE-2025-30719 [MEDIUM] CVE-2025-30719: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). The supported version that is affected is 7.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulnerability can res
nvd
CVE-2025-21571HIGHCVSS 7.3≥ 7.0.0, < 7.0.24≥ 7.1.0, < 7.1.62025-01-21
CVE-2025-21571 [HIGH] CWE-732 CVE-2025-21571: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.24 and prior to 7.1.6. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vu
nvd
CVE-2025-21533MEDIUMCVSS 5.5≥ 7.0.0, < 7.0.24≥ 7.1.0, < 7.1.62025-01-21
CVE-2025-21533 [MEDIUM] CWE-863 CVE-2025-21533: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.24 and prior to 7.1.6. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful
nvd
CVE-2024-21259HIGHCVSS 7.5≥ 7.0.0, < 7.0.22≥ 7.1.0, < 7.1.22024-10-15
CVE-2024-21259 [HIGH] CWE-863 CVE-2024-21259: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.22 and prior to 7.1.2. Difficult to exploit vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the
nvd
CVE-2024-21248MEDIUMCVSS 5.3≥ 7.0.0, ≤ 7.0.22≥ 7.1.0, ≤ 7.1.22024-10-15
CVE-2024-21248 [MEDIUM] CWE-284 CVE-2024-21248: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.22 and prior to 7.1.2. Difficult to exploit vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the
nvd
CVE-2024-21263MEDIUMCVSS 6.1≥ 7.0.0, ≤ 7.0.22≥ 7.1.0, ≤ 7.1.22024-10-15
CVE-2024-21263 [MEDIUM] CVE-2024-21263: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.22 and prior to 7.1.2. Easily exploitable vulnerability allows low privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks
nvd
CVE-2024-21273MEDIUMCVSS 6.0≥ 7.0.0, ≤ 7.0.22≥ 7.1.0, ≤ 7.1.22024-10-15
CVE-2024-21273 [MEDIUM] CVE-2024-21273: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.22 and prior to 7.1.2. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. While the vulnerab
nvd
CVE-2024-21253LOWCVSS 2.3≥ 7.0.0, ≤ 7.0.222024-10-15
CVE-2024-21253 [LOW] CWE-404 CVE-2024-21253: Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Suppo Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 7.0.22. Easily exploitable vulnerability allows high privileged attacker with logon to the infrastructure where Oracle VM VirtualBox executes to compromise Oracle VM VirtualBox. Successful attacks of this vulne
nvd