Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
CISA Flags VMware Vulnerability Amid Active Exploits

CISA Flags VMware Vulnerability Amid Active Exploits

Posted on March 4, 2026 By CWS

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has recently updated its Known Exploited Vulnerabilities (KEV) catalog to include a new critical flaw affecting VMware Aria Operations. This inclusion highlights the active exploitation of the vulnerability identified as CVE-2026-22719, which poses a significant risk to enterprise security.

Understanding the Vulnerability

CVE-2026-22719 has been classified as a command injection vulnerability with a high severity score of 8.1 on the CVSS scale. This flaw enables unauthorized attackers to execute arbitrary commands, potentially leading to remote code execution during product migration processes in VMware Aria Operations. VMware’s advisory from late last month emphasized the severity of this issue.

In addition to this, two other vulnerabilities have been addressed: CVE-2026-22720, a stored cross-site scripting vulnerability, and CVE-2026-22721, which could allow privilege escalation and administrative access.

Affected Products and Solutions

The vulnerabilities impact specific versions of VMware products, including VMware Cloud Foundation and VMware vSphere Foundation 9.x.x.x, which have been resolved in version 9.0.2.0, and VMware Aria Operations 8.x, fixed in version 8.18.6. For those unable to immediately implement the patch, VMware provides a shell script workaround to mitigate the risk.

Despite these measures, details on the exploitation methods, responsible parties, and overall scale remain unclear. Broadcom acknowledged reports of exploitation but has yet to confirm them independently.

Urgency for Federal Agencies

Given the active exploitation threats, Federal Civilian Executive Branch (FCEB) agencies are mandated to apply the necessary patches by March 24, 2026. This urgent directive underscores the critical nature of the vulnerability and the need for immediate action to safeguard against potential cybersecurity threats.

As developments continue, organizations are advised to stay informed and ensure their systems are updated to prevent compromise from these known vulnerabilities.

The Hacker News Tags:CISA, command injection, CVE-2026-22719, Cybersecurity, enterprise security, Exploitation, Patch, security flaw, VMware, Vulnerability

Post navigation

Previous Post: Windows 11 Upgrade Issues Disrupt Network Access
Next Post: Critical VMware Aria Operations Flaw Actively Targeted

Related Posts

OtterCookie v4 Adds VM Detection and Chrome, MetaMask Credential Theft Capabilities OtterCookie v4 Adds VM Detection and Chrome, MetaMask Credential Theft Capabilities The Hacker News
Feds Seize .4M VerifTools Fake-ID Marketplace, but Operators Relaunch on New Domain Feds Seize $6.4M VerifTools Fake-ID Marketplace, but Operators Relaunch on New Domain The Hacker News
New Android Trojan “Datzbro” Tricking Elderly with AI-Generated Facebook Travel Events New Android Trojan “Datzbro” Tricking Elderly with AI-Generated Facebook Travel Events The Hacker News
AI Malware, Voice Bot Flaws, Crypto Laundering, IoT Attacks — and 20 More Stories AI Malware, Voice Bot Flaws, Crypto Laundering, IoT Attacks — and 20 More Stories The Hacker News
Lazarus Hits Web3, Intel/AMD TEEs Cracked, Dark Web Leak Tool & More Lazarus Hits Web3, Intel/AMD TEEs Cracked, Dark Web Leak Tool & More The Hacker News
Scanning Activity on Palo Alto Networks Portals Jump 500% in One Day Scanning Activity on Palo Alto Networks Portals Jump 500% in One Day The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Silver Dragon APT41 Targets Governments with Advanced Techniques
  • Severe FreeScout Bug Threatens Server Security
  • PHP Developer Community Threatened by Malicious Packages
  • Critical VMware Vulnerability Exposes IT Systems to Risks
  • Critical VMware Aria Operations Flaw Actively Targeted

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Silver Dragon APT41 Targets Governments with Advanced Techniques
  • Severe FreeScout Bug Threatens Server Security
  • PHP Developer Community Threatened by Malicious Packages
  • Critical VMware Vulnerability Exposes IT Systems to Risks
  • Critical VMware Aria Operations Flaw Actively Targeted

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News