logo

CVE-2026-47870: VMware Avi Load Balancer Authenticated Remote Code Execution

ID: d39e5e53-5676-5e35-9d5b-078f9c965ffc

STIX ID: report--d39e5e53-5676-5e35-9d5b-078f9c965ffc

Feed Name: CosmicBytez Labs

Threat Score
65/100

Date Published: 2026-07-19

Date Updated: 2026-07-19

...
...

VMware disclosed CVE-2026-47870, a network-accessible privilege escalation vulnerability in Avi Load Balancer (CVSS v3.1 7.1). The report lists affected version branches and fixed releases (e.g., 32.1.2, 31.2.2-2p3, 30.2.7), describes the attack vector as network with low complexity and low privileges required, and provides remediation and mitigation recommendations including patching, restricting management interface access, enforcing MFA, and auditing accounts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.