CVE-2026-47870: VMware Avi Load Balancer Authenticated Remote Code Execution
ID: d39e5e53-5676-5e35-9d5b-078f9c965ffc
STIX ID: report--d39e5e53-5676-5e35-9d5b-078f9c965ffc
Feed Name: CosmicBytez Labs
Threat Score
VMware disclosed CVE-2026-47870, a network-accessible privilege escalation vulnerability in Avi Load Balancer (CVSS v3.1 7.1). The report lists affected version branches and fixed releases (e.g., 32.1.2, 31.2.2-2p3, 30.2.7), describes the attack vector as network with low complexity and low privileges required, and provides remediation and mitigation recommendations including patching, restricting management interface access, enforcing MFA, and auditing accounts.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
