VYPR

Aria Operation for Logs

by VMware

CVEs (2)

  • CVE-2025-22221Jan 30, 2025
    risk 0.00cvss epss 0.00

    VMware Aria Operation for Logs contains a stored cross-site scripting vulnerability. A malicious actor with admin privileges to VMware Aria Operations for Logs may be able to inject a malicious script that could be executed in a victim's browser when performing a delete action in the Agent Configuration.

  • CVE-2025-22218Jan 30, 2025
    risk 0.00cvss epss 0.01

    VMware Aria Operations for Logs contains an information disclosure vulnerability. A malicious actor with View Only Admin permissions may be able to read the credentials of a VMware product integrated with VMware Aria Operations for Logs