VMware fixes: critical auth bypass and VM escapes
Broadcom has published emergency patches for several VMware products. The updates address, among other things, a VMware critical auth bypass and a flaw that enables VM escapes.
Broadcom has published emergency patches for several VMware products. The updates address, among other things, a VMware critical auth bypass and a flaw that enables VM escapes.
The NCSC reports that vulnerabilities in Adobe Campaign Classic have been patched. The issues can enable unauthorized code execution and high-impact SQL injection.
GitLab security fixes were released for several security issues affecting versions prior to 19.0.5, 19.1.3, and 19.2.1. The fixes help close gaps around access control, input handling, and workflow protection.
The NCSC reports critical vulnerabilities patched in VMware vCenter, ESX, Workstation, and Fusion. Key issues include an authentication bypass, directory traversal, and out-of-bounds memory flaws.