logo

Critical Vulnerabilities in VMware Avi Load Balancer Allow Authentication Bypass

ID: f916aea3-3c47-534b-b3e3-bef533ab7e3f

STIX ID: report--f916aea3-3c47-534b-b3e3-bef533ab7e3f

Feed Name: ThreatCluster

Threat Score
75/100

Date Published: 2026-07-17

Date Updated: 2026-07-19

...
...

### Executive Summary Broadcom disclosed multiple critical vulnerabilities in VMware Avi Load Balancer — most notably CVE-2026-47865 (authentication bypass, CVSS 9.8) and CVE-2026-47867 (remote code execution). The flaws impact several Avi versions; patches are available in 30.2.7+ and affected users (especially those on 22.1.1–22.1.7) are urged to upgrade immediately to mitigate high-risk exposure.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.