DMZ//THREAT INTEL
FEED ACTIVELAST SYNC: 05:09:16ZSOURCES: 14CRITICAL: 39
⚠ ACTIVE ALERTS
@MsftSecIntel CRITICAL — Microsoft Defender Experts tracked increased ACR Stealer activity from late April through… /// @TalosSecurity CRITICAL — Qilin RaaS remains the most active ransomware operation globally in 2026 with 500+… /// @CrowdStrike CRITICAL — VECT ransomware + TeamPCP supply chain credential theft + BreachForums mass affiliate… /// @MandiantThreats CRITICAL — Tracking Qilin affiliate recruitment activity on Russian-language cybercrime forums… /// @FalconFeedsio CRITICAL — Dark web monitoring alert: FIFA World Cup 2026 credential ecosystem fully operational on…
39Critical Threats
18Active CVEs
8IOCs Tracked
11New Advisories
TLP:WHITEVULNERABILITY BRIEF // CVE-2026-59310PUBLISHED: 2026-07-29
CRITICALCVE-2026-59310

VMware vCenter Directory Traversal RCE in Syslog Server

VENDOR: Broadcom (VMware)//PRODUCT: VMware vCenter Server
9.8
CRITICAL
CVSS 3.1
PATCH STATUS
PATCH AVAILABLE
EXPLOIT STATUS
NO KNOWN EXPLOIT

Also released July 29, 2026 in VMSA-2026-0006, this critical directory traversal flaw in the vCenter Syslog server allows a network-adjacent unauthenticated attacker to read or write arbitrary files, leading to arbitrary code execution on the vCenter appliance host. The vulnerability requires no privileges or user interaction. Broadcom has stated no exploitation has been observed in the wild as of advisory publication; no workaround is available and patching is the only remediation.

Attack Vector
NETWORK
Attack Complexity
LOW
Privs Required
NONE
User Interaction
NONE
Scope / Impact
UNCHANGED
C:H · I:H · A:H
AFFECTED VERSIONSVMware Cloud Foundation/vSphere Foundation 9.1.x (fixed in 9.1.0.0300), 9.0.x (fixed in 9.0.2.0100), 8.0 U3k; vCenter 5.x within applicable Telco Cloud products
  • https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/38017
  • https://thehackernews.com/2026/07/three-critical-vmware-flaws-allow-auth.html
  • https://securityaffairs.com/196231/security/broadcom-patches-critical-vmware-esxi-vulnerability-enabling-host-code-execution.html
  • https://cyberpress.org/critical-vmware-vcenter-flaws/
SHARE BRIEF:✕ Post on Xin Share on LinkedIn