VMware fixed three actively exploited zeroSecurity Affairs·Mar 4, 23:39 UTC · Mar 4, 2025Exploit / PoC in the wildCVE-2025-22224CVE-2025-22225CVE-2025-2222660
Auth bypass CVE-2025Security Affairs·Mar 26, 07:07 UTC · Mar 26, 2025Exploit / PoC in the wildCVE-2025-22230CVE-2025-22224CVE-2025-22225+1 CVEs60
U.S. CISA adds Linux kernel and VMware ESXi and Workstation flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Mar 5, 06:09 UTC · Mar 5, 2025Exploit / PoC in the wildCVE-2024-50302CVE-2025-22225CVE-2025-22224+3 CVEs60
CISA, VMware warn of new vulnerabilities being exploited by hackersThe Record·Mar 4, 21:25 UTC · Mar 4, 2025Vulnerability in the wildCVE-2025-22224CVE-2025-22225CVE-2025-2222660
Broadcom Patches Critical ESXi Vulnerability Enabling Host Code ExecutionSecurity Affairs·Jul 29, 13:02 UTC · Jul 29, 2026Vulnerability in the wildCVE-2026-47876CVE-2026-59309CVE-2026-59310+2 CVEs60
VMware ESXi Flaw Exploited by Ransomware Groups for Admin AccessThe Hacker News·Jul 31, 04:04 UTC · Jul 31, 2024Ransomware in the wildCVE-2024-37085CVE-2023-2825260
VMware ESXi auth bypass zero-day exploited by ransomware operators (CVE-2024-37085)Help Net Security·Jul 30, 00:00 UTC · Jul 30, 2024Ransomware in the wildCVE-2024-3708560
Microsoft calls out apparent ESXi vulnerability that some researchers say is a ‘nothing burger’CyberScoop·Jul 30, 17:13 UTC · Jul 30, 2024Vulnerability in the wildCVE-2024-3708560