Critical Vulnerabilities in VMware Avi Load Balancer Allow Authentication Bypass
ID: f916aea3-3c47-534b-b3e3-bef533ab7e3f
STIX ID: report--f916aea3-3c47-534b-b3e3-bef533ab7e3f
Feed Name: ThreatCluster
Threat Score
### Executive Summary Broadcom disclosed multiple critical vulnerabilities in VMware Avi Load Balancer — most notably CVE-2026-47865 (authentication bypass, CVSS 9.8) and CVE-2026-47867 (remote code execution). The flaws impact several Avi versions; patches are available in 30.2.7+ and affected users (especially those on 22.1.1–22.1.7) are urged to upgrade immediately to mitigate high-risk exposure.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
