A Critical Flaw Hits VMware Workstation and Fusion Users
VMware users are facing an urgent threat as Broadcom has released patches for two critical vulnerabilities affecting VMware Workstation and Fusion. The flaws, identified as CVE-2026-59346 and CVE-2026-59347, could lead to arbitrary code execution on the host system, putting sensitive data at risk. Both vulnerabilities have been rated 9.3 and 8.1 in severity by Broadcom, respectively.
The first vulnerability, tracked as CVE-2026-59346, is an integer overflow bug that can be exploited by a malicious actor with local administrative privileges on a virtual machine equipped with the VMXNET3 virtual network adapter. This allows the attacker to execute code on the host system, potentially leading to data theft or unauthorized access.
The second flaw, CVE-2026-59347, is a stack-based buffer overflow that can be triggered by a malicious actor with local administrative privileges on a virtual machine. In this case, the attacker can execute code as the VMX process running on the host system.
Both vulnerabilities affect VMware Workstation and Fusion versions 25H2 and 26H1 and were resolved in version 26H1u1. Broadcom emphasizes that there are no workarounds for either flaw, making it essential to update to a patched iteration as soon as possible.
It’s worth noting that security experts have long warned about the potential risks associated with VMware products being exploited by threat actors. According to CISA’s KEV list, more than two dozen VMware vulnerabilities have been identified in recent years. This highlights the importance of staying vigilant and keeping software up-to-date to prevent such attacks.
VMware users are advised to download and install the latest patches as soon as possible to mitigate these critical threats. In today’s complex cybersecurity landscape, it’s essential for users to prioritize patch management and stay informed about emerging vulnerabilities to protect their sensitive data.
In practical terms, this means that VMware users should check their software versions immediately and update to the patched iteration (version 26H1u1) without delay. This will help prevent potential attacks and ensure the security of their virtual machines and host systems. Additionally, it’s crucial for users to remain aware of emerging vulnerabilities and take proactive steps to protect themselves from cyber threats.
Source: SecurityWeek — 2026-09-04