imPC@ndo IT

Tracker / CVE-2025-22226

CVE-2025-22226

Exploited High 7.1

VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. A malicious actor with administrative privileges to a virtual machine may be able to exploit this issue to leak memory from the vmx process.

Affected products and versions

vmware cloud_foundation
vmware esxi
vmware fusion · 13.0.0 → 13.6.3
vmware telco_cloud_infrastructure
vmware telco_cloud_platform
vmware workstation · 17.0 → 17.6.3

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References