#4
The Hacker News
general
September 05, 2026 at 16:05 UTC
Critical VMware Workstation and Fusion Flaw Lets VM Admins Execute Host Code
By [email protected] (The Hacker News)
AI Summary
Broadcom patched CVE-2026-59346 (CVSS 9.3), a critical integer-overflow vulnerability in VMware Workstation and Fusion that allows a local attacker with elevated VM privileges to execute arbitrary code on the host system. Organizations using these hypervisors should apply the security updates immediately to prevent VM escape scenarios.
Relevance score: 84.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →