Cloud foundation
This hub aggregates every CVE we track for Cloud foundation, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
152
CVEs tracked
23
Critical
74
High
19
In CISA KEV
Severity distribution
HIGH74MEDIUM51CRITICAL23LOW4
Monthly trend
2
0
5
0
5
0
3
0
8
3
5
0
2
0
0
0
0
3
0
0
0
3
5
0
2024-092026-08
Latest CVEs
The 15 most recently published vulnerabilities affecting Cloud foundation.
- CVE-2026-41709ESX insufficient logging vulnerability2.7
- CVE-2026-41703Out-of-bounds read vulnerability7.6
- CVE-2026-47876VMXNET3 out-of-bounds write vulnerability9.3
- CVE-2026-59309vCenter authentication-bypass vulnerability9.8
- CVE-2026-59310vCenter directory-traversal vulnerability9.8
- CVE-2026-41724VMSA-2026-0004: VMware Cloud Foundation Operations updates address multiple vulnerabilities (CVE-2026-41722, CVE-2026-41723 and CVE-2026-41724)8.0
- CVE-2026-41723VMSA-2026-0004: VMware Cloud Foundation Operations updates address multiple vulnerabilities (CVE-2026-41722, CVE-2026-41723 and CVE-2026-41724)8.0
- CVE-2026-41722VMSA-2026-0004: VMware Cloud Foundation Operations updates address multiple vulnerabilities (CVE-2026-41722, CVE-2026-41723 and CVE-2026-41724)8.0
- CVE-2026-22721VMware Aria Operations privilege escalation vulnerability6.2
- CVE-2026-22720VMware Aria Operations stored cross-site scripting vulnerability8.0
- CVE-2026-22719VMware Aria Operations command injection vulnerabilityKEV8.1
- CVE-2025-41250Header injection vulnerability8.5
- CVE-2025-41244VMSA-2025-0015: VMware Aria Operations and VMware Tools updates address multiple vulnerabilities (CVE-2025-41244,CVE-2025-41245, CVE-2025-41246)KEV7.8
- CVE-2025-41241Denial-of-service vulnerability4.4
- CVE-2025-41239vSockets information-disclosure vulnerability7.1
Product normalization is registry-driven with AI assist and human review. How it works