Monday , August 17 2026
VMware

VMware Fixed Multiple Flaws Allow Attackers to Inject Malicious Scripts

Broadcom has revealed three stored cross-site scripting (XSS) flaws that affect VMware Cloud Foundation Operations and some other products. They warn that attackers who are logged in could add harmful scripts to do admin tasks in the system.

Tracked as CVE-2026-41722, CVE-2026-41723, and CVE-2026-41724, the issues were fixed in the security notice VMSA-2026-0004, released on June 8, 2026.

DoNot (APT-C-35) Targeting Bangladesh Military Personnel

Bangladesh's military and defense system is actively under targeted attack linked to DoNot Team, or APT-C-35, as stated in a...
Read More
DoNot (APT-C-35) Targeting Bangladesh Military Personnel

McDonald’s, Vodafone Affected by Azure Theft Campaign Exposing Millions of Records

A large Azure data theft campaign is surfacing on the dark web. A hacker is offering employee lists taken from...
Read More
McDonald’s, Vodafone Affected by Azure Theft Campaign Exposing Millions of Records

NIST to Modernize NVD in the Age of Artificial Intelligence

National Institute of Standards and Technology (NIST) demands feedback from industry and the government on how to update the National...
Read More
NIST to Modernize NVD in the Age of Artificial Intelligence

ALERT
Multiple TP-Link Flaws Allow to Bypass Auth and Escalate Privileges

TP-Link has revealed several serious security flaws in Aginet networking products managed by ISPs. This includes mesh systems, routers, PON...
Read More
ALERT  Multiple TP-Link Flaws Allow to Bypass Auth and Escalate Privileges

LiteLLM supply chain attack reveals 153GB of stolen credentials online

153GB record surface online stolen during the LiteLLM supply chain attack linked to thousands of corporate domains, including AWS, Samsung,...
Read More
LiteLLM supply chain attack reveals 153GB of stolen credentials online

PATCHCORD Backdoor Targets Telecom and CII In South Asia

A previously undocumented backdoor called PATCHCORD actively target telecom and critical information infrastructure (CII) in South Asia. According to Acronis...
Read More
PATCHCORD Backdoor Targets Telecom and CII In South Asia

Fortinet Fixes Multiple Flaws in FortiWeb, FortiManager, and FortiClient

Fortinet has released fixes for a set of authentication flaws in its FortiWeb, FortiManager, and FortiClient products. It warns admins...
Read More
Fortinet Fixes Multiple Flaws in FortiWeb, FortiManager, and FortiClient

“City-Forum” Campaign
“City-Forum” Campaign Attacks Salesforce and ServiceNow Instances Worldwide

A data theft plan is stealing information from anonymous users on Salesforce Experience Cloud and ServiceNow customer portals using special...
Read More
“City-Forum” Campaign  “City-Forum” Campaign Attacks Salesforce and ServiceNow Instances Worldwide

Palo Alto Patches 11 New flaws Across PAN-OS, GlobalProtect, and Prisma Access

Palo Alto Networks shared its security bulletin revealing 11 new issues that impact PAN-OS, the GlobalProtect App, Prisma Access Agent,...
Read More
Palo Alto Patches 11 New flaws Across PAN-OS, GlobalProtect, and Prisma Access

CVE-2026-20349, CVE-2026-68820
Cisco and Windows patched zero days exploited in attack

Cisco warns customers that it has fixed a serious security hole in firewalls using Secure Firewall Adaptive Security Appliance (ASA)...
Read More
CVE-2026-20349, CVE-2026-68820  Cisco and Windows patched zero days exploited in attack

VMware Stored XSS Vulnerabilities

VMware Cloud Foundation Operations has several stored cross-site scripting flaws caused by not properly checking user input.

Stored XSS is more dangerous than reflected XSS because the harmful code stays on the server and runs every time a victim opens the affected part, allowing repeated attacks on many users.

The flaws were shared privately with Broadcom by Alexis Bernazzani from Visa Inc. The notice covers many Broadcom virtualization products, such as VMware Aria Operations, VMware Cloud Foundation Operations, VMware Cloud Foundation, VMware vSphere Foundation, and VMware Telco Cloud Platform. Broadcom has put out fixes and updates that companies should use based on the Response Matrix.

Product Component Affected Version CVEs Addressed Fixed Version
VMware Cloud Foundation / vSphere Foundation VMware Cloud Foundation Operations 9.1.x.x CVE-2026-41722, CVE-2026-41723 9.1.0.0
VMware Cloud Foundation / vSphere Foundation VMware Cloud Foundation Operations 9.0.x.x CVE-2026-41722, CVE-2026-41723 9.0.2.0 EP2
VMware Aria Operations N/A 8.x CVE-2026-41722, CVE-2026-41723 8.18.6
VMware Aria Operations N/A 8.x CVE-2026-41722, CVE-2026-41723, CVE-2026-41724 8.18.7
VMware Cloud Foundation VMware Aria Operations 5.x CVE-2026-41722, CVE-2026-41723, CVE-2026-41724 8.18.7
VMware Telco Cloud Platform VMware Aria Operations 5.x CVE-2026-41722, CVE-2026-41723, CVE-2026-41724 KB443138

Administrators should prioritize applying the listed fixed versions promptly, given the absence of any workaround.

Organizations should check who has roles and limit permissions for making policies, views, and text-widgets. This will reduce the number of accounts that can cause these problems while fixes are being applied.

Check Also

FortiWeb

Fortinet Fixes Multiple Flaws in FortiWeb, FortiManager, and FortiClient

Fortinet has released fixes for a set of authentication flaws in its FortiWeb, FortiManager, and …