CVE-2026-59309
Published Jul 30, 2026
Last updated 21 days ago
AI description
CVE-2026-59309 is an authentication bypass vulnerability found within the VMware Directory Service component of VMware vCenter Server. This flaw allows a malicious actor with network access to vCenter to bypass authentication mechanisms and gain unauthorized access to the system. Broadcom, the vendor, disclosed this vulnerability on July 29, 2026, as part of a broader security advisory. While the vulnerability enables unauthorized access, Broadcom has not publicly detailed the precise bypass mechanism or the specific privilege level an attacker might achieve after successful exploitation.
- Description
- VMware vCenter contains an authentication bypass vulnerability in the VMware Directory Service. A malicious actor with network access to vCenter may exploit this issue to bypass authentication and gain unauthorized access to the system.
- Source
- security@vmware.com
- NVD status
- Analyzed
- Products
- vcenter_server
CVSS 3.1
- Type
- Secondary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
- security@vmware.com
- CWE-303
- Hype score
- Not currently trending
VMware vCenter sotto attacco: due campagne su CVE-2026-59310 e CVE-2026-59309 Guerra Cibernetica, apt, cina, Quirso, vmware https://t.co/70LzXKtk5p https://t.co/2c7vIkMbfb
@matricedigitale
17 Aug 2026
63 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
🚨 Critical VMware vCenter Vulnerabilities — CVSS 9.8 Broadcom has issued VMSA-2026-0006.1 addressing multiple vulnerabilities across VMware vCenter, ESX, Workstation, Fusion and Cloud Foundation. * CVE-2026-59309 — Critical vCenter authentication bypass, CVSS 9.8. * An
@DailyDarkWeb
14 Aug 2026
12244 Impressions
24 Retweets
78 Likes
28 Bookmarks
1 Reply
2 Quotes
هشدار امنیتی : دسترسی سرور Vmware Esxi و VCenter رو سریعا محدود به آی پی های خودتون کنید. آسیبپذیری های بحرانی با شناسههای CVE-2026-59309، CVE-2026-59310 و CVE-2026-47876 شناسایی ش
@alisalehiman
5 Aug 2026
3056 Impressions
2 Retweets
41 Likes
20 Bookmarks
1 Reply
0 Quotes
CVE-2026-59309 and CVE-2026-59310 let attackers bypass vCenter authentication and gain remote code execution. CVE-2026-47876 lets a malicious VM break out to the ESXi host. Patch now. Full analysis on our blog: https://t.co/1ZxE7H75EZ
@FSEvolved
3 Aug 2026
8 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
برای محصولات VMware workstation و ESX و Fusion و vCenter سه آسیب پذیری با کدهای شناسایی CVE-2026-59309 و CVE-2026-59310 و CVE-2026-47876 از نوع authentication bypass و VM escapes منتشر شده است. حتما پچ و به رو
@EthicalSafe
1 Aug 2026
6 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🔴 CRITICAL · VMware vCenter CVE-2026-59309 · CVSS 9.8 A network attacker can bypass vCenter authentication and gain unauthorized system access. No workaround; apply Broadcom's fixed-version patches. https://t.co/nwOXbERv0g #CyberSecurity #CVE #VMware
@vulnipulse
1 Aug 2026
42 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes
Warning: A critical incorrect authentication vulnerability and a path traversal vulnerability in #Broadcom #VMware #vCenter #CVE-2026-59309 #CVE-2026-59310 CVSS: 9.8 An unauthorized remote attacker can exploit them to execute arbitrary code #Patch #Patch #Patch
@CCBalert
31 Jul 2026
283 Impressions
1 Retweet
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Kritické zranitelnosti v produktech VMware: CVE-2026-59309, CVE-2026-59310 a CVE-2026-47876 https://t.co/vXshekv7r8
@abclinuxu
31 Jul 2026
107 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
🚨 CRITICAL VMware Alert – PATCH NOW! VMSA-2026-0006: CVSS 9.8 auth bypass + RCE in vCenter. No workarounds. Broadcom dropped the bombshell on July 29. Two critical flaws (CVE-2026-59309 & CVE-2026-59310) let attackers bypass login and execute code with network access
@CyberAlert_
31 Jul 2026
15 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes
Broadcom just patched 5 vulnerabilities across VMware vCenter, ESX, Workstation, and Fusion — 3 of them critical, with no workarounds available and no exploitation observed in the wild (yet). Admins are urged to patch immediately: CVE-2026-59309 (9.8, Critical) — Auth bypass
@techepages
31 Jul 2026
49 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 Upozorňujeme na kritické zranitelnosti v produktech VMware, CVE-2026-59309, CVE-2026-59310 a CVE-2026-47876. Zranitelnosti v VMware vCenter umožňují vzdálenému útočníkovi se síťovým přístupem obejít autentizaci a získat neoprávněný přístup k vCenter, p
@GOVCERT_CZ
31 Jul 2026
650 Impressions
3 Retweets
7 Likes
1 Bookmark
0 Replies
1 Quote
Teils kritische Schwachstellen (CVE-2026-59309, CVE-2026-59310, CVE-2026-47876, CVE-2026-41703, CVE-2026-41709) in VMware by Broadcom-Produkten (VMware ESX, vCenter, Workstation, Fusion). Updates sind laut Adversory vorhanden. https://t.co/JefXtYbpy2
@etguenni
31 Jul 2026
337 Impressions
1 Retweet
2 Likes
0 Bookmarks
1 Reply
0 Quotes
VMware vCenterに認証回避とRCEの脆弱性、CVE-2026-59309とCVE-2026-59310はCVSS 9.8 https://t.co/SEYY8Vtgbq #セキュリティ対策Lab #security #securitynews #脆弱性
@securityLab_jp
31 Jul 2026
166 Impressions
1 Retweet
1 Like
1 Bookmark
0 Replies
0 Quotes
Broadcom patched five VMware vulnerabilities across vCenter, ESX, Workstation, and Fusion, three of them critical. Two vCenter flaws (CVE-2026-59309, an auth bypass, and CVE-2026-59310, a directory traversal enabling code execution) score 9.8, while a VMXNET3 out-of-bounds write
@CyberAlertsHQ
30 Jul 2026
114 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
⚡️ VMware just released a critical security update for ESXi hypervisor suite (VMSA-2026-0006). Two attack vectors: 1. Remote attack on vCenter – CVE-2026-59309: auth bypass via network access CVE-2026-59310: directory traversal RCE An exploit would allow control of entir
@zerodayalpha
30 Jul 2026
6652 Impressions
11 Retweets
65 Likes
25 Bookmarks
2 Replies
2 Quotes
VMSA-2026-0006: VMware ESX, vCenter, Workstation, and Fusion updates address multiple vulnerabilities (CVE-2026-59309, CVE-2026-59310, CVE-2026-47876, CVE-2026-41703, CVE-2026-41709) https://t.co/d4U3b5FBIT
@autumn_good_35
30 Jul 2026
739 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
1 Quote
⚠️ Vulnerabilidades en productos VMware ❗ CVE-2026-59310 ❗ CVE-2026-59309 ❗ CVE-2026-47876 ➡️ Más info: https://t.co/oLyx4EA1TW https://t.co/ENzqZOx4NN
@CERTpy
30 Jul 2026
173 Impressions
0 Retweets
0 Likes
1 Bookmark
0 Replies
0 Quotes
Critical VMware vCenter Vulnerabilities Allow Authentication Bypass and Remote Code Execution (CVE-2026-59309, CVE-2026-59310) https://t.co/XY9zKzJGdN
@ReneRobichaud
30 Jul 2026
88 Impressions
1 Retweet
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Critical VMware vCenter Vulnerabilities Allow Authentication Bypass and Remote Code Execution (CVE-2026-59309, CVE-2026-59310) https://t.co/RmLeDd9yX1
@CeptBiro
30 Jul 2026
48 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨 On 7/29/26, #Broadcom published a security advisory addressing multiple vulns in #VMWare products. Of particular interest are CVE-2026-59309 & CVE-2026-59310, 2 critical, remotely exploitable vulns affecting vCenter Server. More in the Rapid7 blog: https://t.co/G0QjsUI
@rapid7
30 Jul 2026
3247 Impressions
10 Retweets
25 Likes
16 Bookmarks
0 Replies
0 Quotes
🚨 ALERTĂ - Vulnerabilități critice în VMware ➡️ Broadcom a publicat în cadrul buletinului VMSA-2026-0006 actualizări care remediază mai multe vulnerabilități din produsele VMware. ⚠️ CVE-2026-59309 ⚠️ CVE-2026-59310 ⚠️ CVE-2026-47876 👉 https://
@DNSC_RO
30 Jul 2026
177 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
JUST IN: Broadcom patches critical VMware vCenter flaws (CVE-2026-59309 & CVE-2026-59310, both CVSS 9.8). Remote unauthenticated attackers can bypass authentication or achieve remote code execution. A separate critical VM escape vulnerability also affects ESXi. No workarounds
@CyberWatch05
30 Jul 2026
133 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Two CVSS 9.8s just hit VMware vCenter (VMSA-2026-0006): • CVE-2026-59309 — auth bypass (network) • CVE-2026-59310 — RCE via path traversal + a VM-escape in ESX No in-the-wild exploitation yet. Patch now. The finding is the CVE. The exposure is your control plane. https
@fiks_cloud
30 Jul 2026
0 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes
CVE-2026-59309/CVE-2026-59310 CVSS9.8という非常にクリティカルであるとういう情報もネットには出ています。 【セキュリティ ニュース】「#VMware #ESX」「VMware #vCenter」に深刻な #脆弱性 - 修正版が公開(1ページ目 / 全2
@anzendo
30 Jul 2026
39 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
VMwareが多数の脆弱性を修正(VMSA-2026-0006)。重大(Critical)な脆弱性として、vCenterの遠隔コード実行CVE-2026-59309及びCVE-2026-59310と、ESXiのVMエスケープCVE-2026-47876が含まれている。境界外書き込みのCVE-2026-41703はESXiのほ
@__kokumoto
29 Jul 2026
647 Impressions
1 Retweet
5 Likes
2 Bookmarks
0 Replies
0 Quotes
VMSA-2026-0006: VMware ESX, vCenter, Workstation, and Fusion updates address multiple vulnerabilities (CVE-2026-59309, CVE-2026-59310, CVE-2026-47876, CVE-2026-41703, CVE-2026-41709) https://t.co/WmqO1KgmBJ
@makopicut
29 Jul 2026
88 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes
Broadcom patches critical VMware flaws, including a VM escape in ESXi (CVE-2026-47876) and an auth bypass in vCenter (CVE-2026-59309). https://t.co/5rqXQqtV7o
@f1tym1
29 Jul 2026
47 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Broadcom issued VMSA-2026-0006 fixing five vulnerabilities in VMware vCenter and ESX, two rated Critical. CVE-2026-59309 allows network authentication bypass in VMware Directory Service. CVE-2026-59310 enables path traversal leading to code execution via Syslog processing.
@WorldCyberNewsX
29 Jul 2026
29 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Attackers chained three critical VMware vulnerabilities to escalate from vCenter authentication bypass to ESX host compromise. CVE-2026-59309 and CVE-2026-59310 enabled initial access and code execution, while CVE-2026-47876 allowed VM escape for lateral movement. Runtime
@aviatrixtrc
29 Jul 2026
64 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CRITICAL: Three new VMware flaws patch today auth bypass in vCenter (CVE-2026-59309), RCE via directory traversal (CVE-2026-59310), and VM escape in VMXNET3 (CVE-2026-47876). No active exploitation yet. Update ESXi/vCenter now. https://t.co/SNQLvS4va8 #infosec #cve #vmware
@staatse_sec
29 Jul 2026
7 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Broadcom patched three critical VMware flaws across ESX, vCenter, Workstation, and Fusion. Two hit vCenter at CVSS 9.8: an authentication bypass (CVE-2026-59309) and a directory traversal enabling remote code execution (CVE-2026-59310). A third, CVSS 9.3, lets a VM with local
@XavierRiveraX
29 Jul 2026
55 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Broadcomは、VMware製品群に影響する複数の脆弱性を修正するセキュリティアドバイザリ「VMSA-2026-0006」を公開した。vCenterの認証回避やESXでのVMエスケープなど重大な問題が含まれ、CVSS最大値は9.8となっている。
@yousukezan
29 Jul 2026
1562 Impressions
8 Retweets
13 Likes
3 Bookmarks
0 Replies
0 Quotes
VMware vCenterのCVE-2026-59309およびCVE-2026-59310、CVSS 9.8の深刻度に https://t.co/wLtXSfJIKo
@TYOBlackHatNews
29 Jul 2026
32 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Broadcom patched a critical VMware vCenter vulnerability. CVE-2026-59309 and CVE-2026-59310 both score 9.8 CVSS and allow auth bypass or code execution. #VMware #vCenter #CVE202659309 #CVE202659310 #ESXi #InfoSec https://t.co/pL0q1pY7eU
@Daily_CyberSec
29 Jul 2026
352 Impressions
3 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
🚨 5 VMware flaws just patched by Broadcom (ESXi, vCenter, Workstation, Fusion): 🔴 Critical: CVE-2026-47876 – VM escape via VMXNET3 adapter CVE-2026-59309 – vCenter auth bypass CVE-2026-59310 – vCenter RCE 🟠 High: CVE-2026-41703 – DoS/info leak 🟡 Low: CVE-20
@techepages
29 Jul 2026
55 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Broadcom released updates to fix a critical VMware authentication bypass (CVE-2026-59309). A directory traversal flaw (CVE-2026-59310) was also patched. #VMware #CyberSecurity #CVE202659309 #InfoSec https://t.co/s0wVPTJyDN
@Daily_CyberSec
29 Jul 2026
303 Impressions
1 Retweet
1 Like
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:*:*:*:*:*:*:*:*",
"matchCriteriaId": "6B17478A-E6D9-4C6B-8810-7E1BC9E7392F",
"versionEndExcluding": "8.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:-:*:*:*:*:*:*",
"matchCriteriaId": "CC974CA1-88D3-42E4-BF1F-28870F8171B5",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:a:*:*:*:*:*:*",
"matchCriteriaId": "EFE63984-F69B-4593-9AEC-D179D6D98B08",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:b:*:*:*:*:*:*",
"matchCriteriaId": "34D1F3B3-8E3F-4E4D-8EE6-2F593663B5CC",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:c:*:*:*:*:*:*",
"matchCriteriaId": "16F3D992-9F48-4604-9AAF-DC2D1CE98BE2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update1:*:*:*:*:*:*",
"matchCriteriaId": "C745A7E6-4760-48CD-B7C4-1C2C20217F21",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update1a:*:*:*:*:*:*",
"matchCriteriaId": "A5522514-8ED9-45DB-9036-33FE40D77E7D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update1b:*:*:*:*:*:*",
"matchCriteriaId": "8C27C660-E917-4944-8B4C-41D9622B76D7",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update1c:*:*:*:*:*:*",
"matchCriteriaId": "56CFB469-B3E6-4503-A47C-D18206D4D19A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update1d:*:*:*:*:*:*",
"matchCriteriaId": "67024A43-9E13-4F4E-B711-731792DA3840",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update1e:*:*:*:*:*:*",
"matchCriteriaId": "1188E9D6-53AD-40D0-8146-3728D071008D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update2:*:*:*:*:*:*",
"matchCriteriaId": "604F559F-1775-4F29-996E-9079B99345B6",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update2a:*:*:*:*:*:*",
"matchCriteriaId": "61DC9400-5AEE-49AC-9925-0A96E32BD8C0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update2b:*:*:*:*:*:*",
"matchCriteriaId": "98C1B77E-AB0E-4E8A-8294-2D3D230CDF9B",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update2c:*:*:*:*:*:*",
"matchCriteriaId": "8EC8BEF1-7908-46C0-841A-834778D1A863",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update2d:*:*:*:*:*:*",
"matchCriteriaId": "89D5A7F9-3183-4EE7-828C-13BB9169E199",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update2e:*:*:*:*:*:*",
"matchCriteriaId": "9EB94E5F-9AFB-471C-887C-4C53B5169347",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update3:*:*:*:*:*:*",
"matchCriteriaId": "D8C5E404-9A83-472C-AE97-25DAE332C327",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update3a:*:*:*:*:*:*",
"matchCriteriaId": "78312C9E-4653-4C79-9886-A7A63DB98262",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update3b:*:*:*:*:*:*",
"matchCriteriaId": "722B1899-0229-4BEA-94C4-1E475406E7AF",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update3c:*:*:*:*:*:*",
"matchCriteriaId": "E1EA338E-4263-42A9-8E91-C3D91A7F8AD1",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update3d:*:*:*:*:*:*",
"matchCriteriaId": "3EFDF451-E83B-4340-BF06-AA017B042841",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update3e:*:*:*:*:*:*",
"matchCriteriaId": "20D28DF8-BAD2-4613-9325-A55B06FB1F21",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update3g:*:*:*:*:*:*",
"matchCriteriaId": "FF925343-3889-46EC-87C5-82B8C3DC33ED",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update3h:*:*:*:*:*:*",
"matchCriteriaId": "D9BD9CEF-D37E-45AF-883F-120C32849E14",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update3i:*:*:*:*:*:*",
"matchCriteriaId": "1D402845-1C50-40CE-BAA2-CDD5615B660D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:8.0:update3j:*:*:*:*:*:*",
"matchCriteriaId": "9552133F-9C74-4368-857A-BAFA182BE8EA",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
},
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:vmware:telco_cloud_infrastructure:3.0:*:*:*:*:*:*:*",
"matchCriteriaId": "D11103A7-6AB5-4E78-BE11-BC2A04A09F19",
"vulnerable": false
},
{
"criteria": "cpe:2.3:a:vmware:telco_cloud_platform:*:*:*:*:*:*:*:*",
"matchCriteriaId": "320FDFEE-22D1-4650-B177-BF7B1E750D45",
"versionEndIncluding": "5.2",
"versionStartIncluding": "3.0",
"vulnerable": false
}
],
"negate": false,
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:*:*:*:*:*:*:*:*",
"matchCriteriaId": "45C693CF-0995-4332-9B1E-018EBCDAF83A",
"versionEndExcluding": "9.0.2.0100",
"versionStartIncluding": "9.0",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:vmware:vcenter_server:*:*:*:*:*:*:*:*",
"matchCriteriaId": "C014E906-B622-424E-BFF9-660187C73C54",
"versionEndExcluding": "9.1.0.0300",
"versionStartIncluding": "9.1",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
},
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:vmware:cloud_foundation:-:*:*:*:*:*:*:*",
"matchCriteriaId": "31A7BB38-3238-413E-9736-F1A165D40867",
"vulnerable": false
},
{
"criteria": "cpe:2.3:a:vmware:vsphere_foundation:-:*:*:*:*:*:*:*",
"matchCriteriaId": "03AD0AB7-45A3-4DC7-923D-1166346EEA12",
"vulnerable": false
}
],
"negate": false,
"operator": "OR"
}
],
"operator": "AND"
}
]