CVE-2026-47867: Remote Code Execution via Code Injection in VMware Avi Load Balancer
ID: de9dc866-1f76-5f6f-ac5a-688d4d26483a
STIX ID: report--de9dc866-1f76-5f6f-ac5a-688d4d26483a
Feed Name: CosmicBytez Labs
Threat Score
### Executive Summary Broadcom disclosed CVE-2026-47867, a high-severity (CVSS 8.7) code-injection RCE in VMware Avi Load Balancer with changed scope that can allow arbitrary code execution on the Control Plane and potentially impact adjacent infrastructure; multiple affected version branches and available patches are listed, and an attack chain with companion CVEs can enable zero-credential RCE in many releases prior to 32.1.x.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
