VMware Avi Load Balancer contains an authentication bypass vulnerability. A malicious user with network access may be able to access the Avi Control plane by bypassing the authentication mechanism.
Affected versions:
31.1.1 through 31.2.2 (fixed in 31.2.2-2p3)
30.1.1 through 30.2.6 (fixed in 30.2.7)
22.1.1 through 22.1.7 (fixed in 30.2.7)
References
Configurations
No configuration.
History
18 Jul 2026, 09:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-07-18 09:17
Updated : 2026-07-23 05:16
NVD link : CVE-2026-47865
Mitre link : CVE-2026-47865
CVE.ORG link : CVE-2026-47865
JSON object : View
Products Affected
No product.
CWE
CWE-287
Improper Authentication
