logo

CISA Warns of VMware Aria Operations Vulnerability Actively Exploited in Attacks

ID: f1e2b0f3-8881-5281-a4b0-80e20a5d684e

STIX ID: report--f1e2b0f3-8881-5281-a4b0-80e20a5d684e

Feed Name: GBHackers

Threat Score
85/100

Date Published: 2026-03-04

Date Updated: 2026-04-22

Author: Divya

...
...

CISA added CVE-2026-22719 — a command injection vulnerability in Broadcom's VMware Aria Operations that enables unauthenticated remote code execution during support-assisted migrations — to its Known Exploited Vulnerabilities catalog, noting active exploitation in the wild and mandating federal agencies remediate by March 24, 2026; organizations are urged to apply vendor mitigations or discontinue use to prevent compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.