{"id":12022,"date":"2026-07-29T16:38:48","date_gmt":"2026-07-29T22:38:48","guid":{"rendered":"https:\/\/beaconlab.us\/publicacion\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/"},"modified":"2026-09-29T15:00:00","modified_gmt":"2026-09-29T21:00:00","slug":"alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion","status":"publish","type":"publicacion","link":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/","title":{"rendered":"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\"><\/p>\n\n<h2 class=\"wp-block-heading\">Affected product(s):<\/h2>\n\n<ul class=\"wp-block-list\">\n<li><strong>VMware vCenter Server<\/strong><\/li>\n<\/ul>\n\n<p class=\"wp-block-paragraph\"><strong>             <\/strong>9.1.x (fixed in 9.1.0.0300)<\/p>\n\n<p class=\"wp-block-paragraph\">9.0.x (fixed in 9.0.2.0100)<\/p>\n\n<p class=\"wp-block-paragraph\">8.0.x (fixed in 8.0)<\/p>\n\n<p class=\"wp-block-paragraph\">7.0.x (affected; fixes will only be available for customers with an Extended Support contract).<\/p>\n\n<ul class=\"wp-block-list\">\n<li><strong>VMware ESXi<\/strong><\/li>\n<\/ul>\n\n<p class=\"wp-block-paragraph\"><strong>             <\/strong>9.1.x (fixed in 9.1.0.0200)<\/p>\n\n<p class=\"wp-block-paragraph\">9.0.x (fixed in 9.0.2.0100)<\/p>\n\n<p class=\"wp-block-paragraph\">8.0.x (fixed in 8.0)<\/p>\n\n<p class=\"wp-block-paragraph\">7.0.x (affected; Broadcom indicates that patches may be obtained through Extended Support).<\/p>\n\n<ul class=\"wp-block-list\">\n<li><strong>VMware Workstation Pro<\/strong><\/li>\n<\/ul>\n\n<p class=\"wp-block-paragraph\"><strong>          <\/strong>25H2 (fixed by upgrading to 26H1).<\/p>\n\n<ul class=\"wp-block-list\">\n<li><strong>VMware Fusion<\/strong><\/li>\n<\/ul>\n\n<p class=\"wp-block-paragraph\"><strong>          <\/strong>25H2 (fixed by upgrading to 26H1).<\/p>\n\n<h2 class=\"wp-block-heading\">Description<\/h2>\n\n<p class=\"wp-block-paragraph\">Broadcom, through the VMware Security Response Center (vSRC), published advisory <strong><a href=\"https:\/\/support.broadcom.com\/web\/ecx\/support-content-notification\/-\/external\/content\/SecurityAdvisories\/0\/38017?ref=darkwebinformer.com\">VMSA-2026-0006<\/a><\/strong>, which fixes five security vulnerabilities affecting VMware vCenter Server, ESXi, Workstation, and Fusion. Three of them were classified as critical (CVSS up to 9.8) because they allow compromising essential components of the virtualization infrastructure, while the remaining two have a significant impact on the confidentiality and traceability of security events. At the time of publication, there was no public evidence of active exploitation, although Broadcom recommends applying the updates as a priority. The most critical vulnerabilities are described below:<\/p>\n\n<p class=\"wp-block-paragraph\"><strong>CVE-2026-59309 (CVSS 9.8) \u2013 Authentication Bypass in VMware vCenter<\/strong><\/p>\n\n<p class=\"wp-block-paragraph\">A flaw in VMware Directory Service (vmdir) allows an attacker with network access to bypass the vCenter Server authentication mechanism and obtain unauthorized access to the system without the need for valid credentials. Because vCenter is the central management point for VMware infrastructures, exploitation of this vulnerability could completely compromise the virtualization platform.<\/p>\n\n<p class=\"wp-block-paragraph\"><strong>CVE-2026-59310 (CVSS 9.8) \u2013 Remote Code Execution via Directory Traversal<\/strong><\/p>\n\n<p class=\"wp-block-paragraph\">This vulnerability resides in the VMware vCenter Syslog server and combines a Directory Traversal condition that can lead to remote code execution (RCE). An unauthenticated attacker with network access could execute arbitrary code on the vCenter server, gaining control of the system and facilitating lateral movement within the virtualized environment.<\/p>\n\n<p class=\"wp-block-paragraph\"><strong>CVE-2026-47876 (CVSS 9.3) \u2013 Virtual Machine Escape in ESXi<\/strong><\/p>\n\n<p class=\"wp-block-paragraph\">It affects the VMXNET3 virtual network adapter through an Out-of-Bounds Write vulnerability. An attacker who gains administrative privileges within a virtual machine could escape the virtual environment and execute code directly on the ESXi host. This vulnerability only affects virtual machines that use the VMXNET3 adapter, one of the most widely used in VMware environments due to its high performance.<\/p>\n\n<h2 class=\"wp-block-heading\">Solution:<\/h2>\n\n<p class=\"wp-block-paragraph\">Broadcom published security updates for all affected platforms through advisory <a href=\"https:\/\/support.broadcom.com\/web\/ecx\/support-content-notification\/-\/external\/content\/SecurityAdvisories\/0\/38017?ref=darkwebinformer.com\">VMSA-2026-0006<\/a>, where the official patches can be found. The main recommendation is to immediately update vCenter Server, ESXi, VMware Workstation, and VMware Fusion to the fixed versions indicated in the vendor&#8217;s response matrix.<\/p>\n\n<p class=\"wp-block-paragraph\">In the case of CVE-2026-47876, it is recommended to identify the virtual machines that use the VMXNET3 adapter, as only they are susceptible to this vulnerability. However, Broadcom clarifies that it is not necessary to update VMware Tools, since the fix is in the hypervisor and not in the guest operating system.<\/p>\n\n<p class=\"wp-block-paragraph\">It is also recommended to restrict administrative access to vCenter, properly segment management networks, limit the exposure of management services only to trusted networks, and monitor any anomalous access attempts while the updates are being implemented.<\/p>\n\n<h2 class=\"wp-block-heading\">Additional information:<\/h2>\n\n<ul class=\"wp-block-list\">\n<li><strong><a href=\"https:\/\/support.broadcom.com\/web\/ecx\/support-content-notification\/-\/external\/content\/SecurityAdvisories\/0\/38017?ref=darkwebinformer.com\">https:\/\/support.broadcom.com\/web\/ecx\/support-content-notification\/-\/external\/content\/SecurityAdvisories\/0\/38017?ref=darkwebinformer.com<\/a><\/strong><\/li>\n\n\n\n<li><strong><a href=\"https:\/\/www.broadcom.com\/support\/vmware-services\/security-response\">https:\/\/www.broadcom.com\/support\/vmware-services\/security-response<\/a><\/strong><\/li>\n\n\n\n<li><a href=\"https:\/\/darkwebinformer.com\/broadcom-patches-critical-vmware-flaws-enabling-vcenter-authentication-bypass-and-esxi-vm-escape\/\">https:\/\/darkwebinformer.com\/broadcom-patches-critical-vmware-flaws-enabling-vcenter-authentication-bypass-and-esxi-vm-escape\/<\/a><\/li>\n<\/ul>\n","protected":false},"featured_media":10722,"template":"","class_list":["post-12022","publicacion","type-publicacion","status-publish","has-post-thumbnail","hentry"],"acf":[],"aioseo_notices":[],"aioseo_head":"\n\t\t<!-- All in One SEO 5.0.1.1 - aioseo.com -->\n\t<meta name=\"description\" content=\"Affected product(s): VMware vCenter Server 9.1.x (fixed in 9.1.0.0300) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; fixes will only be available for customers with an Extended Support contract). VMware ESXi 9.1.x (fixed in 9.1.0.0200) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; Broadcom indicates that patches may be obtained through\" \/>\n\t<meta name=\"robots\" content=\"max-image-preview:large\" \/>\n\t<link rel=\"canonical\" href=\"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/\" \/>\n\t<meta name=\"generator\" content=\"All in One SEO (AIOSEO) 5.0.1.1\" \/>\n\t\t<meta property=\"og:locale\" content=\"en_US\" \/>\n\t\t<meta property=\"og:site_name\" content=\"Beacon Lab - CSIRT by Cybolt\" \/>\n\t\t<meta property=\"og:type\" content=\"article\" \/>\n\t\t<meta property=\"og:title\" content=\"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion - Beacon Lab\" \/>\n\t\t<meta property=\"og:description\" content=\"Affected product(s): VMware vCenter Server 9.1.x (fixed in 9.1.0.0300) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; fixes will only be available for customers with an Extended Support contract). VMware ESXi 9.1.x (fixed in 9.1.0.0200) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; Broadcom indicates that patches may be obtained through\" \/>\n\t\t<meta property=\"og:url\" content=\"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/\" \/>\n\t\t<meta property=\"og:image\" content=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2025\/05\/Vmware.svg.png\" \/>\n\t\t<meta property=\"og:image:secure_url\" content=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2025\/05\/Vmware.svg.png\" \/>\n\t\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t\t<meta property=\"og:image:height\" content=\"183\" \/>\n\t\t<meta property=\"article:published_time\" content=\"2026-07-29T22:38:48+00:00\" \/>\n\t\t<meta property=\"article:modified_time\" content=\"2026-09-29T21:00:00+00:00\" \/>\n\t\t<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n\t\t<meta name=\"twitter:site\" content=\"@BeaconLabMX\" \/>\n\t\t<meta name=\"twitter:title\" content=\"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion - Beacon Lab\" \/>\n\t\t<meta name=\"twitter:description\" content=\"Affected product(s): VMware vCenter Server 9.1.x (fixed in 9.1.0.0300) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; fixes will only be available for customers with an Extended Support contract). VMware ESXi 9.1.x (fixed in 9.1.0.0200) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; Broadcom indicates that patches may be obtained through\" \/>\n\t\t<meta name=\"twitter:image\" content=\"https:\/\/beaconlab.us\/wp-content\/uploads\/2025\/05\/Vmware.svg.png\" \/>\n\t\t<script type=\"application\/ld+json\" class=\"aioseo-schema\">\n\t\t\t{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\\\/#breadcrumblist\",\"itemListElement\":[{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#listItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/\",\"nextItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\\\/#listItem\",\"name\":\"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion\"}},{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\\\/#listItem\",\"position\":2,\"name\":\"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion\",\"previousItem\":{\"@type\":\"ListItem\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#listItem\",\"name\":\"Home\"}}]},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#organization\",\"name\":\"Beacon Lab\",\"description\":\"CSIRT by Cybolt\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/\",\"telephone\":\"+528007374357\",\"logo\":{\"@type\":\"ImageObject\",\"url\":\"https:\\\/\\\/beaconlab.mx\\\/wp-content\\\/uploads\\\/2023\\\/12\\\/BeaconLab_V2-03.png\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\\\/#organizationLogo\"},\"image\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\\\/#organizationLogo\"},\"sameAs\":[\"https:\\\/\\\/twitter.com\\\/BeaconLabMX\",\"https:\\\/\\\/www.linkedin.com\\\/showcase\\\/beaconlabmx\"]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\\\/#webpage\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\\\/\",\"name\":\"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion - Beacon Lab\",\"description\":\"Affected product(s): VMware vCenter Server 9.1.x (fixed in 9.1.0.0300) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; fixes will only be available for customers with an Extended Support contract). VMware ESXi 9.1.x (fixed in 9.1.0.0200) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; Broadcom indicates that patches may be obtained through\",\"inLanguage\":\"en-US\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#website\"},\"breadcrumb\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\\\/#breadcrumblist\"},\"image\":{\"@type\":\"ImageObject\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Vmware.svg.png\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\\\/#mainImage\",\"width\":1200,\"height\":183},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/publication\\\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\\\/#mainImage\"},\"datePublished\":\"2026-07-29T16:38:48-06:00\",\"dateModified\":\"2026-09-29T15:00:00-06:00\"},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/\",\"name\":\"Beacon Lab\",\"description\":\"CSIRT by Cybolt\",\"inLanguage\":\"en-US\",\"publisher\":{\"@id\":\"https:\\\/\\\/beaconlab.us\\\/en\\\/#organization\"}}]}\n\t\t<\/script>\n\t\t<!-- All in One SEO -->\n\n","aioseo_head_json":{"title":"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion - Beacon Lab","description":"Affected product(s): VMware vCenter Server 9.1.x (fixed in 9.1.0.0300) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; fixes will only be available for customers with an Extended Support contract). VMware ESXi 9.1.x (fixed in 9.1.0.0200) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; Broadcom indicates that patches may be obtained through","canonical_url":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/","robots":"max-image-preview:large","keywords":"","webmasterTools":{"miscellaneous":""},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"BreadcrumbList","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/#breadcrumblist","itemListElement":[{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/#listItem","position":1,"name":"Home","item":"https:\/\/beaconlab.us\/en\/","nextItem":{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/#listItem","name":"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion"}},{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/#listItem","position":2,"name":"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion","previousItem":{"@type":"ListItem","@id":"https:\/\/beaconlab.us\/en\/#listItem","name":"Home"}}]},{"@type":"Organization","@id":"https:\/\/beaconlab.us\/en\/#organization","name":"Beacon Lab","description":"CSIRT by Cybolt","url":"https:\/\/beaconlab.us\/en\/","telephone":"+528007374357","logo":{"@type":"ImageObject","url":"https:\/\/beaconlab.mx\/wp-content\/uploads\/2023\/12\/BeaconLab_V2-03.png","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/#organizationLogo"},"image":{"@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/#organizationLogo"},"sameAs":["https:\/\/twitter.com\/BeaconLabMX","https:\/\/www.linkedin.com\/showcase\/beaconlabmx"]},{"@type":"WebPage","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/#webpage","url":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/","name":"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion - Beacon Lab","description":"Affected product(s): VMware vCenter Server 9.1.x (fixed in 9.1.0.0300) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; fixes will only be available for customers with an Extended Support contract). VMware ESXi 9.1.x (fixed in 9.1.0.0200) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; Broadcom indicates that patches may be obtained through","inLanguage":"en-US","isPartOf":{"@id":"https:\/\/beaconlab.us\/en\/#website"},"breadcrumb":{"@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/#breadcrumblist"},"image":{"@type":"ImageObject","url":"https:\/\/beaconlab.us\/wp-content\/uploads\/2025\/05\/Vmware.svg.png","@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/#mainImage","width":1200,"height":183},"primaryImageOfPage":{"@id":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/#mainImage"},"datePublished":"2026-07-29T16:38:48-06:00","dateModified":"2026-09-29T15:00:00-06:00"},{"@type":"WebSite","@id":"https:\/\/beaconlab.us\/en\/#website","url":"https:\/\/beaconlab.us\/en\/","name":"Beacon Lab","description":"CSIRT by Cybolt","inLanguage":"en-US","publisher":{"@id":"https:\/\/beaconlab.us\/en\/#organization"}}]},"og:locale":"en_US","og:site_name":"Beacon Lab - CSIRT by Cybolt","og:type":"article","og:title":"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion - Beacon Lab","og:description":"Affected product(s): VMware vCenter Server 9.1.x (fixed in 9.1.0.0300) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; fixes will only be available for customers with an Extended Support contract). VMware ESXi 9.1.x (fixed in 9.1.0.0200) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; Broadcom indicates that patches may be obtained through","og:url":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/","og:image":"https:\/\/beaconlab.us\/wp-content\/uploads\/2025\/05\/Vmware.svg.png","og:image:secure_url":"https:\/\/beaconlab.us\/wp-content\/uploads\/2025\/05\/Vmware.svg.png","og:image:width":1200,"og:image:height":183,"article:published_time":"2026-07-29T22:38:48+00:00","article:modified_time":"2026-09-29T21:00:00+00:00","twitter:card":"summary_large_image","twitter:site":"@BeaconLabMX","twitter:title":"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion - Beacon Lab","twitter:description":"Affected product(s): VMware vCenter Server 9.1.x (fixed in 9.1.0.0300) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; fixes will only be available for customers with an Extended Support contract). VMware ESXi 9.1.x (fixed in 9.1.0.0200) 9.0.x (fixed in 9.0.2.0100) 8.0.x (fixed in 8.0) 7.0.x (affected; Broadcom indicates that patches may be obtained through","twitter:image":"https:\/\/beaconlab.us\/wp-content\/uploads\/2025\/05\/Vmware.svg.png"},"aioseo_meta_data":{"post_id":"12022","title":null,"description":null,"keywords":null,"keyphrases":{"focus":{"keyphrase":"","score":0,"analysis":{"keyphraseInTitle":{"score":0,"maxScore":9,"error":1}}},"additional":[]},"primary_term":null,"canonical_url":null,"og_title":null,"og_description":null,"og_object_type":"default","og_image_type":"default","og_image_url":null,"og_image_width":null,"og_image_height":null,"og_image_custom_url":null,"og_image_custom_fields":null,"og_video":"","og_custom_url":null,"og_article_section":null,"og_article_tags":null,"twitter_use_og":false,"twitter_card":"default","twitter_image_type":"default","twitter_image_url":null,"twitter_image_custom_url":null,"twitter_image_custom_fields":null,"twitter_title":null,"twitter_description":null,"schema":{"blockGraphs":[],"customGraphs":[],"default":{"data":{"Article":[],"Course":[],"Dataset":[],"FAQPage":[],"Movie":[],"Person":[],"Product":[],"ProductReview":[],"Car":[],"Recipe":[],"Service":[],"SoftwareApplication":[],"WebPage":[]},"graphName":"WebPage","isEnabled":true},"graphs":[]},"schema_type":"default","schema_type_options":null,"pillar_content":false,"robots_default":true,"robots_noindex":false,"robots_noarchive":false,"robots_nosnippet":false,"robots_nofollow":false,"robots_noimageindex":false,"robots_noodp":false,"robots_notranslate":false,"robots_max_snippet":"-1","robots_max_videopreview":"-1","robots_max_imagepreview":"large","priority":null,"frequency":"default","local_seo":null,"breadcrumb_settings":null,"limit_modified_date":false,"ai":{"faqs":[],"keyPoints":[],"schemas":[],"titles":[],"descriptions":[],"socialPosts":{"email":{"subject":"","preview":"","content":""},"linkedin":[],"twitter":[],"facebook":[],"instagram":[]}},"created":"2026-09-29 20:59:54","updated":"2026-09-29 21:01:18","seo_analyzer_scan_date":null,"focus_keyword":null,"additional_keywords":null,"truseo_locale":null},"aioseo_breadcrumb":"<div class=\"aioseo-breadcrumbs\"><span class=\"aioseo-breadcrumb\">\n\t\t\t<a href=\"https:\/\/beaconlab.us\/en\/\" title=\"Home\">Home<\/a>\n\t\t<\/span><span class=\"aioseo-breadcrumb-separator\">&raquo;<\/span><span class=\"aioseo-breadcrumb\">\n\t\t\tAlert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion\n\t\t<\/span><\/div>","aioseo_breadcrumb_json":[{"label":"Home","link":"https:\/\/beaconlab.us\/en\/"},{"label":"Alert 2026-79 Critical Vulnerabilities in VMware vCenter, ESXi, Workstation, and Fusion","link":"https:\/\/beaconlab.us\/en\/publication\/alert-2026-79-critical-vulnerabilities-in-vmware-vcenter-esxi-workstation-and-fusion\/"}],"_links":{"self":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion\/12022","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion"}],"about":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/types\/publicacion"}],"version-history":[{"count":1,"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion\/12022\/revisions"}],"predecessor-version":[{"id":12023,"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/publicacion\/12022\/revisions\/12023"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/media\/10722"}],"wp:attachment":[{"href":"https:\/\/beaconlab.us\/en\/wp-json\/wp\/v2\/media?parent=12022"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}