VYPR
Medium severity6.2NVD Advisory· Published Feb 25, 2026· Updated Jun 17, 2026

CVE-2026-22721

CVE-2026-22721

Description

VMware Aria Operations contains a privilege escalation vulnerability. A malicious actor with privileges in vCenter to access Aria Operations may leverage this vulnerability to obtain administrative access in VMware Aria Operations. To remediate CVE-2026-22721, apply the patches listed in the 'Fixed Version' column of the 'Response Matrix' found in  VMSA-2026-0001 https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36947 .

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

9
  • cpe:2.3:a:vmware:aria_operations:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:vmware:aria_operations:*:*:*:*:*:*:*:*range: >=8.0,<8.18.6
    • (no CPE)range: 8.18.0
    • (no CPE)
  • cpe:2.3:a:vmware:cloud_foundation:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:vmware:cloud_foundation:*:*:*:*:*:*:*:*range: >=4.0,<5.2.3
    • (no CPE)range: 4.0
  • cpe:2.3:a:vmware:telco_cloud_infrastructure:*:*:*:*:*:*:*:*
    Range: >=2.2,<=3.0
  • cpe:2.3:a:vmware:telco_cloud_platform:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:vmware:telco_cloud_platform:*:*:*:*:*:*:*:*range: >=4.0,<=5.1
    • (no CPE)range: 4.0

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.