logo

CVE-2026-47867: Remote Code Execution via Code Injection in VMware Avi Load Balancer

ID: de9dc866-1f76-5f6f-ac5a-688d4d26483a

STIX ID: report--de9dc866-1f76-5f6f-ac5a-688d4d26483a

Feed Name: CosmicBytez Labs

Threat Score
78/100

Date Published: 2026-07-18

Date Updated: 2026-07-19

...
...

### Executive Summary Broadcom disclosed CVE-2026-47867, a high-severity (CVSS 8.7) code-injection RCE in VMware Avi Load Balancer with changed scope that can allow arbitrary code execution on the Control Plane and potentially impact adjacent infrastructure; multiple affected version branches and available patches are listed, and an attack chain with companion CVEs can enable zero-credential RCE in many releases prior to 32.1.x.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.