Broadcom has released a security advisory highlighting patches for several vulnerabilities identified in VMware products, including ESXi, vCenter, Workstation, and Fusion. The advisory was published on Wednesday, urging users to apply the updates to safeguard against potential exploits.
Critical Vulnerabilities Explained
Three vulnerabilities have been classified as critical, demanding immediate attention. Among these, CVE-2026-47876 is an out-of-bounds write issue located within the VMXNET3 virtual network adapter of ESXi. This flaw allows attackers with local administrative rights on a virtual machine to execute arbitrary code on the host system, a scenario referred to as ‘VM escape’ by VMware.
Moreover, CVE-2026-59309 poses a significant risk as it allows attackers to bypass authentication mechanisms in vCenter, providing unauthorized access to the target system. Additionally, CVE-2026-59310, another critical vulnerability in vCenter, permits remote attackers to execute arbitrary code, heightening the risk for network-based attacks.
Additional Vulnerabilities and Impact
VMware ESXi, Workstation, and Fusion are also susceptible to CVE-2026-41703, a high-severity vulnerability. This flaw could be exploited by attackers with VM deployment permissions to extract sensitive information or trigger a denial-of-service (DoS) condition on the host process.
Lastly, CVE-2026-41709 is identified as a low-severity issue in ESXi, enabling attackers with administrative privileges to conduct certain operations without logging, potentially concealing malicious activities.
Recommendations and Future Outlook
While Broadcom has not observed any active exploitation of these vulnerabilities, the urgency to update is paramount. Cybercriminals frequently target unpatched VMware products, making it crucial for organizations to install the latest updates promptly.
Alongside the advisory, Broadcom has provided an FAQ document detailing the vulnerabilities’ impact and the necessary steps for patching. Organizations are encouraged to review these resources to ensure comprehensive protection against potential threats.
For further updates, users can refer to related advisories, including those addressing severe vulnerabilities in VMware Avi Load Balancer and VMware Fusion, as well as the actively exploited VMware Aria Operations vulnerability.
