Vmware Esxi vulnerabilities
146 known vulnerabilities affecting vmware/esxi.
Total CVEs
146
CISA KEV
8
actively exploited
Public exploits
13
Exploited in wild
6
Severity breakdown
CRITICAL19HIGH59MEDIUM62LOW6
Vulnerabilities
Page 1 of 8
CVE-2025-41236CRITICALCVSS 9.3≥ 8.0, < ESXi80U3f-24784735≥ 8.0, < ESXi80U2e-24789317+1 more2025-07-15
CVE-2025-41236 [CRITICAL] CWE-787 CVE-2025-41236: VMware ESXi, Workstation, and Fusion contain an integer-overflow vulnerability in the VMXNET3 virtua
VMware ESXi, Workstation, and Fusion contain an integer-overflow vulnerability in the VMXNET3 virtual network adapter. A malicious actor with local administrative privileges on a virtual machine with VMXNET3 virtual network adapter may exploit this issue to execute code on the host. Non VMXNET3 virtual adapters are not affected by this issue.
cvelistv5nvd
CVE-2025-41238CRITICALCVSS 9.3≥ 8.0, < ESXi80U3f-24784735≥ 8.0, < ESXi80U2e-24789317+1 more2025-07-15
CVE-2025-41238 [CRITICAL] CWE-787 CVE-2025-41238: VMware ESXi, Workstation, and Fusion contain a heap-overflow vulnerability in the PVSCSI (Paravirtua
VMware ESXi, Workstation, and Fusion contain a heap-overflow vulnerability in the PVSCSI (Paravirtualized SCSI) controller that leads to an out of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. On ESXi, the ex
cvelistv5nvd
CVE-2025-41237CRITICALCVSS 9.3≥ 8.0, < ESXi80U3f-24784735≥ 8.0, < ESXi80U2e-24789317+1 more2025-07-15
CVE-2025-41237 [CRITICAL] CWE-787 CVE-2025-41237: VMware ESXi, Workstation, and Fusion contain an integer-underflow in VMCI (Virtual Machine Communica
VMware ESXi, Workstation, and Fusion contain an integer-underflow in VMCI (Virtual Machine Communication Interface) that leads to an out-of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. On ESXi, the exploitat
cvelistv5nvd
CVE-2025-41239HIGHCVSS 7.1≥ 8.0, < ESXi80U3f-24784735≥ 8.0, < ESXi80U2e-24789317+1 more2025-07-15
CVE-2025-41239 [HIGH] CWE-908 CVE-2025-41239: VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability
VMware ESXi, Workstation, Fusion, and VMware Tools contains an information disclosure vulnerability due to the usage of an uninitialised memory in vSockets. A malicious actor with local administrative privileges on a virtual machine may be able to exploit this issue to leak memory from processes communicating with vSockets.
cvelistv5nvd
CVE-2025-41228MEDIUMCVSS 4.3PoC≥ 8.0, < ESXi80U3se-24659227≥ 7.0, < ESXi70U3sv-247238682025-05-20
CVE-2025-41228 [MEDIUM] CWE-79 CVE-2025-41228: VMware ESXi and vCenter Server contain a reflected cross-site scripting vulnerability due to imprope
VMware ESXi and vCenter Server contain a reflected cross-site scripting vulnerability due to improper input validation. A malicious actor with network access to the login page of certain ESXi host or vCenter Server URL paths may exploit this issue to steal cookies or redirect to malicious websites.
cvelistv5nvd
CVE-2025-41226MEDIUMCVSS 6.8≥ 8.0, < ESXi80U3se-24659227≥ 7.0, < ESXi70U3sv-247238682025-05-20
CVE-2025-41226 [MEDIUM] CWE-400 CVE-2025-41226: VMware ESXi contains a denial-of-service vulnerability that occurs when performing a guest operation
VMware ESXi contains a denial-of-service vulnerability that occurs when performing a guest operation. A malicious actor with guest operation privileges on a VM, who is already authenticated through vCenter Server or ESXi may trigger this issue to create a denial-of-service condition of guest VMs with VMware Tools running and guest operations enabled
cvelistv5nvd
CVE-2025-41227MEDIUMCVSS 5.5≥ 8.0, < ESXi80U3se-24659227≥ 7.0, < ESXi70U3sv-247238682025-05-20
CVE-2025-41227 [MEDIUM] CWE-400 CVE-2025-41227: VMware ESXi, Workstation, and Fusion contain a denial-of-service vulnerability due to certain guest
VMware ESXi, Workstation, and Fusion contain a denial-of-service vulnerability due to certain guest options. A malicious actor with non-administrative privileges within a guest operating system may be able to exploit this issue by exhausting memory of the host process leading to a denial-of-service condition.
cvelistv5nvd
CVE-2025-22224HIGHCVSS 8.2KEVv7.0v8.0+3 more2025-03-04
CVE-2025-22224 [CRITICAL] CWE-367 CVE-2025-22224: VMware ESXi, and Workstation contain a TOCTOU (Time-of-Check Time-of-Use) vulnerability that leads t
VMware ESXi, and Workstation contain a TOCTOU (Time-of-Check Time-of-Use) vulnerability that leads to an out-of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.
cvelistv5nvd
CVE-2025-22225HIGHCVSS 8.2KEVv7.0v8.02025-03-04
CVE-2025-22225 [HIGH] CWE-787 CVE-2025-22225: VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the
VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox.
nvd
CVE-2025-22226MEDIUMCVSS 6.0KEVv7.0v8.02025-03-04
CVE-2025-22226 [HIGH] CWE-125 CVE-2025-22226: VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-o
VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. A malicious actor with administrative privileges to a virtual machine may be able to exploit this issue to leak memory from the vmx process.
nvd
CVE-2024-37085HIGHCVSS 7.2KEVv7.0v8.02024-06-25
CVE-2024-37085 [MEDIUM] CWE-287 CVE-2024-37085: VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Activ
VMware ESXi contains an authentication bypass vulnerability. A malicious actor with sufficient Active Directory (AD) permissions can gain full access to an ESXi host that was previously configured to use AD for user management https://blogs.vmware.com/vsphere/2012/09/joining-vsphere-hosts-to-active-directory.html by re-creating the configured AD gro
nvd
CVE-2024-37086MEDIUMCVSS 6.8v7.0v8.02024-06-25
CVE-2024-37086 [MEDIUM] CWE-125 CVE-2024-37086: VMware ESXi contains an out-of-bounds read vulnerability. A
malicious actor with local administrati
VMware ESXi contains an out-of-bounds read vulnerability. A
malicious actor with local administrative privileges on a virtual
machine with an existing snapshot may trigger an out-of-bounds read
leading to a denial-of-service condition of the host.
nvd
CVE-2024-22273HIGHCVSS 7.8v7.0v8.02024-05-21
CVE-2024-22273 [HIGH] CWE-125 CVE-2024-22273: The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulner
The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability. A malicious actor with access to a virtual machine with storage controllers enabled may exploit this issue to create a denial of service condition or execute code on the hypervisor from a virtual machine in conjunction with other issues.
nvd
CVE-2024-22255HIGHCVSS 7.1v7.0v7.0.0+1 more2024-03-05
CVE-2024-22255 [HIGH] CWE-770 CVE-2024-22255: VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability in the UHCI USB
VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability in the UHCI USB controller. A malicious actor with administrative access to a virtual machine may be able to exploit this issue to leak memory from the vmx process.
nvd
CVE-2024-22254HIGHCVSS 8.2v7.0v7.0.0+1 more2024-03-05
CVE-2024-22254 [HIGH] CWE-787 CVE-2024-22254: VMware ESXi contains an out-of-bounds write vulnerability. A malicious actor with privileges within
VMware ESXi contains an out-of-bounds write vulnerability. A malicious actor with privileges within the VMX process may trigger an out-of-bounds write leading to an escape of the sandbox.
nvd
CVE-2024-22253MEDIUMCVSS 6.7v7.0v7.0.0+1 more2024-03-05
CVE-2024-22253 [CRITICAL] CWE-416 CVE-2024-22253: VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the UHCI USB controll
VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the UHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. On ESXi, the exploitation is contained within the VMX sandbox whereas, o
nvd
CVE-2024-22252MEDIUMCVSS 6.7v7.0v7.0.0+1 more2024-03-05
CVE-2024-22252 [CRITICAL] CWE-416 CVE-2024-22252: VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controll
VMware ESXi, Workstation, and Fusion contain a use-after-free vulnerability in the XHCI USB controller. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. On ESXi, the exploitation is contained within the VMX sandbox whereas, o
nvd
CVE-2023-29552HIGHCVSS 7.5KEVfixed in 7.02023-04-25
CVE-2023-29552 [HIGH] CVE-2023-29552: The Service Location Protocol (SLP, RFC 2608) allows an unauthenticated, remote attacker to register
The Service Location Protocol (SLP, RFC 2608) allows an unauthenticated, remote attacker to register arbitrary services. This could allow the attacker to use spoofed UDP traffic to conduct a denial-of-service attack with a significant amplification factor.
nvd
CVE-2022-31705HIGHCVSS 8.2v7.0v8.02022-12-14
CVE-2022-31705 [HIGH] CWE-787 CVE-2022-31705: VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write vulnerability in the USB 2.0
VMware ESXi, Workstation, and Fusion contain a heap out-of-bounds write vulnerability in the USB 2.0 controller (EHCI). A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host. On ESXi, the exploitation is contained within the VMX sandbo
nvd
CVE-2022-31696HIGHCVSS 8.8v6.5v6.7+1 more2022-12-13
CVE-2022-31696 [HIGH] CWE-787 CVE-2022-31696: VMware ESXi contains a memory corruption vulnerability that exists in the way it handles a network s
VMware ESXi contains a memory corruption vulnerability that exists in the way it handles a network socket. A malicious actor with local access to ESXi may exploit this issue to corrupt memory leading to an escape of the ESXi sandbox.
nvd
1 / 8Next →