Out-of-Bounds Read Vulnerability in VMware Workstation by VMware
CVE-2026-22716

5MEDIUM

Key Information:

Vendor

Vmware

Vendor
CVE Published:
27 February 2026

What is CVE-2026-22716?

An out-of-bounds read vulnerability has been identified in VMware Workstation version 25H1 and earlier. This flaw allows an actor with non-administrative privileges on a guest virtual machine to potentially access sensitive information from the host machine where VMware Workstation is installed. The exploitation of this vulnerability can lead to partial information disclosure, necessitating immediate attention from users and administrators to safeguard their systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Workstation 25H2 < 25H2U1

References

CVSS V3.1

Score:
5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.