CVE-2026-22715

VMWare Workstation and Fusion contain a logic flaw in the management of network packets.  Known attack vectors: A malicious actor with administrative privileges on a Guest VM may be able to interrupt or intercept network connections of other Guest VM's.  Resolution: To remediate CVE-2026-22715 please upgrade to VMware Workstation or Fusion Version 25H2U1
Configurations

No configuration.

History

15 Apr 2026, 00:35

Type Values Removed Values Added
Summary
  • (es) VMWare Workstation y Fusion contienen una falla lógica en la gestión de paquetes de red. Vectores de ataque conocidos: Un actor malicioso con privilegios administrativos en una VM invitada podría interrumpir o interceptar las conexiones de red de otras VM invitadas. Resolución: Para remediar CVE-2026-22715, actualice a VMware Workstation o Fusion Versión 25H2U1

27 Feb 2026, 18:16

Type Values Removed Values Added
CWE CWE-923

26 Feb 2026, 19:32

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-26 19:32

Updated : 2026-06-17 10:20


NVD link : CVE-2026-22715

Mitre link : CVE-2026-22715

CVE.ORG link : CVE-2026-22715


JSON object : View

Products Affected

No product.

CWE
CWE-923

Improper Restriction of Communication Channel to Intended Endpoints