VMware / Workstation
213 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-41703 | Out-of-bounds read vulnerability | HIGH | 7.6 | Jul 30, 2026 |
| CVE-2026-22717 | VMware Workstation out-of-bound read vulnerability | LOW | 2.7 | Feb 27, 2026 |
| CVE-2026-22716 | VMware Workstation out-of-bounds write vulnerability | MEDIUM | 5.0 | Feb 27, 2026 |
| CVE-2026-22722 | VMware Workstation for Windows null pointer dereference may allow an authenticated user to trigger a crash | MEDIUM | 6.1 | Feb 26, 2026 |
| CVE-2026-22715 | VMware Workstation/Fusion NAT vulnerability | MEDIUM | 5.9 | Feb 26, 2026 |
| CVE-2025-41239 | vSockets information-disclosure vulnerability | HIGH | 7.1 | Jul 15, 2025 |
| CVE-2025-41238 | PVSCSI heap-overflow vulnerability | CRITICAL | 9.3 | Jul 15, 2025 |
| CVE-2025-41237 | VMCI integer-underflow vulnerability | CRITICAL | 9.3 | Jul 15, 2025 |
| CVE-2025-41236 | VMXNET3 integer-overflow vulnerability | CRITICAL | 9.3 | Jul 15, 2025 |
| CVE-2025-41227 | Denial-of-Service Vulnerability | MEDIUM | 5.5 | May 20, 2025 |
| CVE-2025-22226 KEV | VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. A malicious actor with administrativ… | HIGH | 7.1 | Mar 4, 2025 |
| CVE-2025-22224 KEV | VMware ESXi, and Workstation contain a TOCTOU (Time-of-Check Time-of-Use) vulnerability that leads to an out-of-bounds write. A malicious actor with local admi… | CRITICAL | 9.3 | Mar 4, 2025 |
| CVE-2024-22273 | The storage controllers on VMware ESXi, Workstation, and Fusion have out-of-bounds read/write vulnerability. A malicious actor with access to a virtual machine… | HIGH | 8.1 | May 21, 2024 |
| CVE-2024-22270 | VMware Workstation and Fusion contain an information disclosure vulnerability in the Host Guest File Sharing (HGFS) functionality. A malicious actor with local… | HIGH | 7.1 | May 14, 2024 |
| CVE-2024-22269 | VMware Workstation and Fusion contain an information disclosure vulnerability in the vbluetooth device. A malicious actor with local administrative privileges… | HIGH | 7.1 | May 14, 2024 |
| CVE-2024-22268 | VMware Workstation and Fusion contain a heap buffer-overflow vulnerability in the Shader functionality. A malicious actor with non-administrative access to a v… | HIGH | 7.1 | May 14, 2024 |
| CVE-2024-22267 | VMware Workstation and Fusion contain a use-after-free vulnerability in the vbluetooth device. A malicious actor with local administrative privileges on a virt… | CRITICAL | 9.3 | May 14, 2024 |
| CVE-2024-22255 | Information disclosure vulnerability | HIGH | 7.1 | Mar 5, 2024 |
| CVE-2024-22253 | Use-after-free vulnerability | CRITICAL | 9.3 | Mar 5, 2024 |
| CVE-2024-22252 | Use-after-free vulnerability | CRITICAL | 9.3 | Mar 5, 2024 |
| CVE-2024-22251 | Out-of-bounds read vulnerability | MEDIUM | 5.9 | Feb 27, 2024 |
| CVE-2023-34044 | Information disclosure vulnerability in bluetooth device-sharing functionality | HIGH | 7.1 | Oct 20, 2023 |
| CVE-2023-20872 | VMware Workstation and Fusion contain an out-of-bounds read/write vulnerability in SCSI CD/DVD device emulation. | HIGH | 8.8 | Apr 25, 2023 |
| CVE-2023-20870 | VMware Workstation and Fusion contain an out-of-bounds read vulnerability that exists in the functionality for sharing host Bluetooth devices with the virtual… | MEDIUM | 6.0 | Apr 25, 2023 |
| CVE-2023-20869 | VMware Workstation (17.x) and VMware Fusion (13.x) contain a stack-based buffer-overflow vulnerability that exists in the functionality for sharing host Blueto… | HIGH | 8.2 | Apr 25, 2023 |
Showing 1 to 25 of 213 CVEs