VYPR
Medium severity6.5NVD Advisory· Published Oct 13, 2021· Updated Jun 17, 2026

CVE-2021-22036

CVE-2021-22036

Description

VMware vRealize Orchestrator ((8.x prior to 8.6) contains an open redirect vulnerability due to improper path handling. A malicious actor may be able to redirect victim to an attacker controlled domain due to improper path handling in vRealize Orchestrator leading to sensitive information disclosure.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:vmware:vrealize_automation:*:*:*:*:*:*:*:*
    Range: >=8.0,<8.6
  • cpe:2.3:a:vmware:vrealize_orchestrator:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:vmware:vrealize_orchestrator:*:*:*:*:*:*:*:*range: >=8.0,<8.6
    • (no CPE)range: <8.6

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.