Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Critical Flaws in VMware Workstation and Fusion Addressed

Critical Flaws in VMware Workstation and Fusion Addressed

Posted on September 4, 2026 By CWS

Broadcom has released critical updates to address significant security vulnerabilities in VMware Workstation and Fusion, as announced on Thursday. These vulnerabilities include two notable flaws, one of which has been given a CVSS score of 9.3, indicating a severe risk.

Details of the Critical Vulnerabilities

The first vulnerability, identified as CVE-2026-59346, involves an integer overflow issue. This flaw could allow a malicious actor with administrative privileges on a virtual machine utilizing the VMXNET3 virtual network adapter to execute arbitrary code on the host system. Broadcom emphasized the potential risk in their advisory.

The second vulnerability, CVE-2026-59347, with a CVSS score of 8.1, is a stack-based buffer overflow. This flaw, while similar in its potential impact, requires different conditions for exploitation. It allows for code execution through the virtual machine’s VMX process.

Impacted Versions and Updates

Both vulnerabilities affect VMware Workstation and Fusion versions 25H2 and 26H1. The issues have been resolved in version 26H1u1, and users are strongly encouraged to update promptly. Broadcom has made it clear that there are no workarounds available, making the update essential for maintaining security.

While there have been no reports of these vulnerabilities being exploited in the wild, they were disclosed to Broadcom privately. However, given the history of VMware products being targeted by threat actors, timely updates are critical.

Broader Implications and Recommendations

Security vulnerabilities in VMware products are not uncommon. Currently, more than two dozen such vulnerabilities are listed in CISA’s Known Exploited Vulnerabilities (KEV) list. This underlines the importance of addressing these security gaps without delay.

Broadcom’s prompt action in patching these flaws highlights the ongoing battle against cyber threats. Users of VMware Workstation and Fusion are advised to apply these updates immediately to safeguard their systems.

In light of these developments, staying informed about the latest security updates and acting swiftly can mitigate potential risks posed by such vulnerabilities.

Security Week News Tags:Broadcom, CVE-2026-59346, CVE-2026-59347, Cybersecurity, security patch, software update, tech news, virtual machine, VMware, Vulnerabilities

Post navigation

Previous Post: New Ted Backdoor Found in HAProxy Systems
Next Post: Hackers Exploit Messaging Services for Windows Backdoors

Related Posts

Zero Networks Raises  Million for Microsegmentation Solution Zero Networks Raises $55 Million for Microsegmentation Solution Security Week News
Linux Bad Epoll Vulnerability Exposes Critical Root Access Risk Linux Bad Epoll Vulnerability Exposes Critical Root Access Risk Security Week News
GitHub’s NPM 12 Blocks Script Execution to Enhance Security GitHub’s NPM 12 Blocks Script Execution to Enhance Security Security Week News
Critical Flaws in VMware Workstation and Fusion Addressed Sevii Enhances AI Defense With Immediate Threat Response Security Week News
Microsoft Patches Over 100 Vulnerabilities Microsoft Patches Over 100 Vulnerabilities Security Week News
Cl0p Ransomware Targets 40+ Firms in Windchill Exploit Cl0p Ransomware Targets 40+ Firms in Windchill Exploit Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • OpenAI Agents Exploit German Wiki to Share Bypass Tactics
  • Nvidia Acquires AI Platform Hugging Face for $13 Billion
  • Microsoft Addresses Exchange Online Email Delays
  • Google Addresses Sixth Chrome Zero-Day in 2026
  • Hackers Exploit Unicode to Bypass Phishing Filters

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • OpenAI Agents Exploit German Wiki to Share Bypass Tactics
  • Nvidia Acquires AI Platform Hugging Face for $13 Billion
  • Microsoft Addresses Exchange Online Email Delays
  • Google Addresses Sixth Chrome Zero-Day in 2026
  • Hackers Exploit Unicode to Bypass Phishing Filters

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark