logo

Three Zero-Day Vulnerabilities Discovered in VMware Products

ID: 158b2f69-0da9-5013-9c36-a02c81d0fa80

STIX ID: report--158b2f69-0da9-5013-9c36-a02c81d0fa80

Feed Name: Cybereason Blog

Threat Score
92/100

Date Published: 2025-03-05

Date Updated: 2026-04-27

Author: Cybereason Consulting Team

...
...

Three zero-day VMware vulnerabilities (CVE-2025-22224, CVE-2025-22225, CVE-2025-22226) with high CVSS scores are being actively exploited and can be chained to enable VM escape to ESXi hypervisors across nearly all supported and unsupported VMware products; immediate upgrade to Broadcom/VMware fixed versions and investigation of historical logs in hosted/multi-tenant environments are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.