216.73.216.233

CVE-2026-22715

· Published 26/02/2026 19:32 · Modified 27/02/2026 18:16

Labels: CVE-2026-22715 2026-02-26CVE-2026-22715CWE-923[email protected]

Essential information

Published
26/02/2026 19:32
Modified
27/02/2026 18:16
Author
Creator
CVSS
5.9 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:L

CVSS metrics

Description

VMWare Workstation and Fusion contain a logic flaw in the management of network packets.  Known attack vectors: A malicious actor with administrative privileges on a Guest VM may be able to interrupt or intercept network connections of other Guest VM's.  Resolution: To remediate CVE-2026-22715 please upgrade to VMware Workstation or Fusion Version 25H2U1

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
vmware / vmware workstation cpe:2.3:a:vmware:vmware_workstation:25H2U1:*:*:*:*:*:*:*
vmware / vmware fusion cpe:2.3:a:vmware:vmware_fusion:25H2U1:*:*:*:*:*:*:*

References