Vendor
VMware
As of , 26 VMware vulnerabilities are on CISA's list of exploited vulnerabilities, 9 of them used in ransomware campaigns; 0 were added in 2026. Patch first: CVE-2020-3950.
Patch first
| # | Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|---|
| 1 | CVE-2020-3950Privilege Escalation | VMware Multiple Products | Patch this weekMetasploit module; verified Exploit-DB entry | 0.07 | ||
| 2 | CVE-2023-20887Command Injection | VMware Aria Operations for Networks | Patch this weekMetasploit module; EPSS 0.98 | 0.98 | ||
| 3 | CVE-2022-22947Code Injection | VMware Spring Cloud Gateway | Patch this weekMetasploit module; EPSS 0.98 | 0.98 | ||
| 4 | CVE-2022-22954Server-Side Template Injection | VMware Workspace ONE Access and Identity Manager | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 5 | CVE-2022-22965JDK 9+ Remote Code Execution | VMware Spring Framework | Patch this weekMetasploit module; EPSS 0.99 | 0.99 | ||
| 6 | CVE-2021-21975Server Side Request Forgery in vRealize Operations Manager API | VMware vRealize Operations Manager API | Patch this weekRansomware use; Metasploit module; EPSS 0.78 | 0.78 | ||
| 7 | CVE-2020-3952Information Disclosure | VMware vCenter Server | Patch this weekMetasploit module; EPSS 0.90 | 0.90 | ||
| 8 | CVE-2021-21972Remote Code Execution | VMware vCenter Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 9 | CVE-2021-21985Improper Input Validation | VMware vCenter Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 10 | CVE-2021-22005File Upload | VMware vCenter Server | Patch this weekRansomware use; Metasploit module; EPSS 0.99 | 0.99 | ||
| 11 | CVE-2022-22960Privilege Escalation | VMware Multiple Products | Patch this weekMetasploit module | 0.36 | ||
| 12 | CVE-2022-22948Incorrect Default File Permissions | VMware vCenter Server | Patch this weekMetasploit module | 0.13 | ||
| 13 | CVE-2018-6961by VeloCloud Command Injection | VMware SD-WAN Edge | Patch this weekEPSS 0.86; verified Exploit-DB entry | 0.86 | ||
| 14 | CVE-2023-34048Out-of-Bounds Write | VMware vCenter Server | Patch this weekEPSS 0.99 | 0.99 | ||
| 15 | CVE-2021-21973Server Side Request Forgery (SSRF) | VMware vCenter Server and Cloud Foundation | Patch this weekEPSS 0.88 | 0.88 | ||
| 16 | CVE-2019-5544OpenSLP Heap-Based Buffer Overflow | VMware VMware ESXi and Horizon DaaS | Patch this weekRansomware use; EPSS 0.97 | 0.97 | ||
| 17 | CVE-2020-3992OpenSLP Use-After-Free | VMware ESXi | Patch this weekRansomware use; EPSS 0.83 | 0.83 | ||
| 18 | CVE-2024-38812Heap-Based Buffer Overflow | VMware vCenter Server | Patch this weekEPSS 0.55 | 0.55 | ||
| 19 | CVE-2024-37085Authentication Bypass | VMware ESXi | Patch this weekRansomware use | 0.27 | ||
| 20 | CVE-2025-22225Arbitrary Write | VMware ESXi | Patch this weekRansomware use | 0.01 | ||
| 21 | CVE-2021-22017Improper Access Control | VMware vCenter Server | Patch soon | 0.49 | ||
| 22 | CVE-2024-38813Privilege Escalation | VMware vCenter Server | Patch soon | 0.17 | ||
| 23 | CVE-2020-4006Multiple VMware Products Command Injection | VMware Multiple Products | Patch soon | 0.17 | ||
| 24 | CVE-2023-20867Authentication Bypass | VMware Tools | Patch soon | 0.14 | ||
| 25 | CVE-2025-22226Information Disclosure | VMware ESXi, Workstation, and Fusion | Patch soon | 0.02 |
Products
- vCenter Server9 entries
- ESXi3 entries
- Multiple Products3 entries
- Aria Operations for Networks1 entry
- ESXi and Workstation1 entry
- ESXi, Workstation, and Fusion1 entry
- SD-WAN Edge1 entry
- Spring Cloud Gateway1 entry
- Spring Framework1 entry
- Tools1 entry
- vCenter Server and Cloud Foundation1 entry
- VMware ESXi and Horizon DaaS1 entry
- vRealize Operations Manager API1 entry
- Workspace ONE Access and Identity Manager1 entry
Added each year
Show the numbers
| Period | entries added |
|---|---|
| 2021 | 8 |
| 2022 | 8 |
| 2023 | 2 |
| 2024 | 5 |
| 2025 | 3 |
| 2026 | none |