Ransomware Gangs Actively Exploiting Critical VMware vCenter RCE Vulnerability (CVE-2026-59310)

AI-generated NewsSnap summary based on source reporting.
Published: 2026-09-15
Category: technology
Source: shattered.io

The Cybersecurity and Infrastructure Security Agency (CISA) has confirmed that ransomware gangs are now actively exploiting a critical remote code execution (RCE) flaw in VMware vCenter Server, tracked as CVE-2026-59310. This vulnerability, with a CVSS score of 9.8, affects the vCenter Syslog server, allowing unauthenticated attackers with network access to execute arbitrary code. Broadcom, which owns VMware, released a fix on July 29, but the escalating exploitation has led CISA to add it to its Known Exploited Vulnerabilities catalog.

Want more?

Open NewsSnap.ai for the full app experience, including audio, personalization, and more news tools.

Open NewsSnap.ai