Broadcom Issues Advisory for Critical VMware Authentication Bypass and Directory Traversal Flaws
Broadcom has released advisory VMSA-2026-0006, detailing multiple high-impact vulnerabilities across VMware vCenter, ESX, Workstation, Fusion, Cloud Foundation, and Telco Cloud platforms. The most severe, CVE-2026-59309, is an authentication-bypass flaw in the VMware Directory Service, allowing network-adjacent attackers to gain full control of the management plane. Another critical flaw, CVE-2026-59310, is a directory-traversal bug enabling arbitrary code execution. Patches are available, and immediate action is urged for exposed instances.
Want more?
Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.
Open NewsSnap.ai