Login
← All news

Three Critical VMware Flaws Allow Auth Bypass, Code Execution, and VM Escape

The Hacker News

Broadcom has released security updates to address multiple security flaws impacting VMware ESX, vCenter, Workstation, and Fusion, three of which have been designated as critical in severity. The first of the three critical-rated flaws is CVE-2026-59309 (CVSS score: 9.8), which has been described as an authentication bypass in VMware vCenter. "A malicious actor with network access to vCenter

Read the full story on The Hacker News https://thehackernews.com/2026/07/three-critical-vmware-flaws-allow-auth.html
Most attacks like this land on ordinary sites rather than chosen targets: an unpatched plugin, a backup nobody ever restored, an account without two-factor. If you would rather your site never became the story, CrockyHost hosting ships with daily backups, automatic updates and a firewall we manage for you.