Out-of-Bounds Read Vulnerability in VMware Workstation by VMware
CVE-2026-22716
5MEDIUM
What is CVE-2026-22716?
An out-of-bounds read vulnerability has been identified in VMware Workstation version 25H1 and earlier. This flaw allows an actor with non-administrative privileges on a guest virtual machine to potentially access sensitive information from the host machine where VMware Workstation is installed. The exploitation of this vulnerability can lead to partial information disclosure, necessitating immediate attention from users and administrators to safeguard their systems.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Workstation 25H2 < 25H2U1
References
CVSS V3.1
Score:
5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved