CRITICALVulnerability
Global

Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access

·Source: The Hacker News

Updated:

Executive Summary

Threat actors have begun to actively exploit a recently patched critical security flaw in Broadcom VMware vCenter, according to new findings from QUIRSO. The vulnerability in question is CVE-2026-59310 (CVSS score: 9.8), a directory-traversal vulnerability in the VMware vCenter server that a malicious actor with network access can exploit to execute arbitrary code. Patches for the flaw were

Analysis

Threat actors have begun to actively exploit a recently patched critical security flaw in Broadcom VMware vCenter, according to new findings from QUIRSO. The vulnerability in question is CVE-2026-59310 (CVSS score: 9.8), a directory-traversal vulnerability in the VMware vCenter server that a malicious actor with network access can exploit to execute arbitrary code. Patches for the flaw were

Indicators of Compromise (1)

CVE (1)
CVE-2026-59310
Source Attribution

Originally published by The Hacker News on Aug 12, 2026.

Related Threats