cbcvebase.

Vmware Cloud Foundation vulnerabilities

140 known vulnerabilities affecting vmware/cloud_foundation.

Total CVEs
140
CISA KEV
16
actively exploited
Public exploits
20
Exploited in wild
25
Severity breakdown
CRITICAL20HIGH66MEDIUM51LOW3

Vulnerabilities

Page 4 of 7
CVE-2022-22945P3HIGHCVSS 7.8≥ 3.0, ≤ 3.112022-02-16
CVE-2022-22945 [HIGH] CWE-78 CVE-2022-22945: VMware NSX Edge contains a CLI shell injection vulnerability. A malicious actor with SSH access to a VMware NSX Edge contains a CLI shell injection vulnerability. A malicious actor with SSH access to an NSX-Edge appliance can execute arbitrary commands on the operating system as root.
nvd
CVE-2021-22024P3HIGHCVSS 7.5≥ 3.0, ≤ 3.10.2.1≥ 4.0, ≤ 4.2.12021-08-30
CVE-2021-22024 [HIGH] CWE-532 CVE-2021-22024: The vRealize Operations Manager API (8.x prior to 8.5) contains an arbitrary log-file read vulnerabi The vRealize Operations Manager API (8.x prior to 8.5) contains an arbitrary log-file read vulnerability. An unauthenticated malicious actor with network access to the vRealize Operations Manager API can read any log file resulting in sensitive information disclosure.
nvd
CVE-2022-31696P3HIGHCVSS 8.8≥ 3.0, < 3.10≥ 4.0, < 4.3.11+7 more2022-12-13
CVE-2022-31696 [HIGH] CWE-787 CVE-2022-31696: VMware ESXi contains a memory corruption vulnerability that exists in the way it handles a network s VMware ESXi contains a memory corruption vulnerability that exists in the way it handles a network socket. A malicious actor with local access to ESXi may exploit this issue to corrupt memory leading to an escape of the ESXi sandbox.
nvd
CVE-2021-22026P3HIGHCVSS 7.5≥ 3.0, ≤ 3.10.2.1≥ 4.0, ≤ 4.2.12021-08-30
CVE-2021-22026 [HIGH] CWE-918 CVE-2021-22026: The vRealize Operations Manager API (8.x prior to 8.5) contains a Server Side Request Forgery in an The vRealize Operations Manager API (8.x prior to 8.5) contains a Server Side Request Forgery in an end point. An unauthenticated malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack leading to information disclosure.
nvd
CVE-2024-38831P3HIGHCVSS 7.8≥ 4.0, ≤ 5.22024-11-26
CVE-2024-38831 [HIGH] CWE-77 CVE-2024-38831: VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with local administrative privileges can insert malicious commands into the properties file to escalate privileges to a root user on the appliance running VMware Aria Operations.
nvd
CVE-2021-22019P3HIGHCVSS 7.5≥ 3.0, < 3.10.2.2≥ 4.0, < 4.32021-09-23
CVE-2021-22019 [HIGH] CVE-2021-22019: The vCenter Server contains a denial-of-service vulnerability in VAPI (vCenter API) service. A malic The vCenter Server contains a denial-of-service vulnerability in VAPI (vCenter API) service. A malicious actor with network access to port 5480 on vCenter Server may exploit this issue by sending a specially crafted jsonrpc message to create a denial of service condition.
nvd
CVE-2020-3969P3HIGHCVSS 7.8≥ 3.0, < 3.10≥ 4.0.0, < 4.0.12020-06-24
CVE-2020-3969 [HIGH] CWE-193 CVE-2020-3969: VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESX VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain an off-by-one heap-overflow vulnerability in the SVGA device. A malicious actor with local access to a virtual machine with 3D graphics enabled may be able to ex
nvd
CVE-2025-22218P3HIGHCVSS 7.7≥ 4.0, ≤ 5.22025-01-30
CVE-2025-22218 [HIGH] CWE-209 CVE-2025-22218: VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin permissions may be able to read the credentials of a VMware product integrated with VMware Aria Operations for Logs
nvd
CVE-2021-22042P3HIGHCVSS 7.8≥ 4.0, < 4.42022-02-16
CVE-2021-22042 [HIGH] CWE-863 CVE-2021-22042: VMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd auth VMware ESXi contains an unauthorized access vulnerability due to VMX having access to settingsd authorization tickets. A malicious actor with privileges within the VMX process only, may be able to access settingsd service running as a high privileged user.
nvd
CVE-2024-38830P3HIGHCVSS 7.8≥ 4.0, ≤ 5.22024-11-26
CVE-2024-38830 [HIGH] CWE-269 CVE-2024-38830: VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with l VMware Aria Operations contains a local privilege escalation vulnerability. A malicious actor with local administrative privileges may trigger this vulnerability to escalate privileges to root user on the appliance running VMware Aria Operations.
nvd
CVE-2025-41230P3HIGHCVSS 7.5≥ 5.x, < 5.2.1.2v4.5.x2025-05-20
CVE-2025-41230 [HIGH] CWE-200 CVE-2025-41230: VMware Cloud Foundation contains an information disclosure vulnerability. A malicious actor with net VMware Cloud Foundation contains an information disclosure vulnerability. A malicious actor with network access to port 443 on VMware Cloud Foundation may exploit this issue to gain access to sensitive information.
nvd
CVE-2026-41723P3HIGHCVSS 8.0≥ 5.0, < 8.18.7≥ 9.0, < 9.0.2.0+1 more2026-06-08
CVE-2026-41723 [HIGH] CVE-2026-41723: VMware Cloud Foundation Operations contains multiple stored cross-site scripting vulnerabilities.A m VMware Cloud Foundation Operations contains multiple stored cross-site scripting vulnerabilities.A malicious actor with privileges to create policies, views or text-widgets may be able to inject scripts to perform administrative actions in VMware Cloud Foundation Operations.
nvd
CVE-2020-4005P3HIGHCVSS 7.8≥ 3.0, < 3.10.1.2≥ 4.0, < 4.1.0.12020-11-20
CVE-2020-4005 [HIGH] CVE-2020-4005: VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-2020 VMware ESXi (7.0 before ESXi70U1b-17168206, 6.7 before ESXi670-202011101-SG, 6.5 before ESXi650-202011301-SG) contains a privilege-escalation vulnerability that exists in the way certain system calls are being managed. A malicious actor with privileges within the VMX process only, may escalate their privileges on the affected system. Successful exploitation of
nvd
CVE-2021-21991P3HIGHCVSS 7.8≥ 3.0, < 3.10.2.2≥ 4.0, < 4.32021-09-22
CVE-2021-21991 [HIGH] CVE-2021-21991: The vCenter Server contains a local privilege escalation vulnerability due to the way it handles ses The vCenter Server contains a local privilege escalation vulnerability due to the way it handles session tokens. A malicious actor with non-administrative user access on vCenter Server host may exploit this issue to escalate privileges to Administrator on the vSphere Client (HTML5) or vCenter Server vSphere Web Client (FLEX/Flash).
nvd
CVE-2024-22273P3HIGHCVSS 7.8≥ 4.0, < 5.1.12024-05-21
CVE-2024-22273 [HIGH] CWE-125 CVE-2024-22273: The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulner The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability. A malicious actor with access to a virtual machine with storage controllers enabled may exploit this issue to create a denial of service condition or execute code on the hypervisor from a virtual machine in conjunction with other issues.
nvd
CVE-2020-3994P3HIGHCVSS 7.4≥ 3.0, < 3.92020-10-20
CVE-2020-3994 [HIGH] CWE-295 CVE-2020-3994: VMware vCenter Server (6.7 before 6.7u3, 6.6 before 6.5u3k) contains a session hijack vulnerability VMware vCenter Server (6.7 before 6.7u3, 6.6 before 6.5u3k) contains a session hijack vulnerability in the vCenter Server Appliance Management Interface update function due to a lack of certificate validation. A malicious actor with network positioning between vCenter Server and an update repository may be able to perform a session hijack when the vCente
nvd
CVE-2025-22219P3CRITICALCVSS 9.0≥ 4.0, ≤ 5.22025-01-30
CVE-2025-22219 [CRITICAL] CWE-79 CVE-2025-22219: VMware Aria Operations for Logs contains a stored cross-site scripting vulnerability. A malicious ac VMware Aria Operations for Logs contains a stored cross-site scripting vulnerability. A malicious actor with non-administrative privileges may be able to inject a malicious script that (can perform stored cross-site scripting) may lead to arbitrary operations as admin user.
nvd
CVE-2020-3982P3HIGHCVSS 7.7≥ 3.0, < 3.10.1≥ 4.0, < 4.12020-10-20
CVE-2020-3982 [HIGH] CWE-367 CVE-2020-3982: VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650 VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202008101-SG, 6.5 before ESXi650-202007101-SG), Workstation (15.x), Fusion (11.x before 11.5.6) contain an out-of-bounds write vulnerability due to a time-of-check time-of-use issue in ACPI device. A malicious actor with administrative access to a virtual machine may be able to exploit
nvd
CVE-2021-22023P3HIGHCVSS 7.2≥ 3.0, ≤ 3.10.2.1≥ 4.0, ≤ 4.2.12021-08-30
CVE-2021-22023 [HIGH] CWE-639 CVE-2021-22023: The vRealize Operations Manager API (8.x prior to 8.5) has insecure object reference vulnerability. The vRealize Operations Manager API (8.x prior to 8.5) has insecure object reference vulnerability. A malicious actor with administrative access to vRealize Operations Manager API may be able to modify other users information leading to an account takeover.
nvd
CVE-2020-3962P3HIGHCVSS 8.2≥ 3.0, < 3.10≥ 4.0.0, < 4.0.12020-06-24
CVE-2020-3962 [HIGH] CWE-416 CVE-2020-3962: VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESX VMware ESXi (7.0 before ESXi_7.0.0-1.20.16321839, 6.7 before ESXi670-202004101-SG and 6.5 before ESXi650-202005401-SG), Workstation (15.x before 15.5.5), and Fusion (11.x before 11.5.5) contain a use-after-free vulnerability in the SVGA device. A malicious actor with local access to a virtual machine with 3D graphics enabled may be able to exploit this
nvd
Vmware Cloud Foundation vulnerabilities | cvebase