<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Fusion (&lt; 26H1u1) - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/products/fusion--26h1u1/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Fri, 04 Sep 2026 18:06:21 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/products/fusion--26h1u1/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Critical Remote Code Execution Vulnerabilities in VMware Fusion and Workstation</title><link>https://feed.craftedsignal.io/briefs/2026-09-vmware-vulnerabilities/</link><pubDate>Fri, 04 Sep 2026 18:06:21 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-vmware-vulnerabilities/</guid><description>VMware has released security updates for Fusion and Workstation to address multiple vulnerabilities, including CVE-2026-59346 and CVE-2026-59347, which could allow a remote attacker to execute arbitrary code.</description><content:encoded><![CDATA[<p>On September 3, 2026, VMware (Broadcom) published security advisory 38288 detailing multiple vulnerabilities affecting VMware Fusion and VMware Workstation. These flaws include CVE-2026-59346 and CVE-2026-59347, which pose a significant risk as they may allow a remote, unauthenticated attacker to achieve arbitrary code execution on the host operating system running the virtualization software. Given the potential for full system compromise, organizations utilizing these virtualization products must prioritize the deployment of updates to version 26H1u1 or later. The vulnerabilities impact Fusion and Workstation deployments across supported operating systems, including Windows and macOS environments. Defenders should ensure patching is completed immediately to mitigate the risk of exploitation.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of these vulnerabilities allows an attacker to execute arbitrary code with the privileges of the virtualization application, potentially leading to total system compromise of the host machine. This affects any environment where Fusion or Workstation is installed, including enterprise developer workstations and lab environments.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Patch all instances of VMware Fusion and VMware Workstation to version 26H1u1 or later immediately.</li>
<li>Refer to Broadcom security advisory 38288 for specific installation instructions and patch availability.</li>
<li>Monitor for unauthorized process execution originating from the virtualization host process (vmware-vmx.exe or equivalent).</li>
</ul>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>vulnerability</category><category>virtualization</category><category>rce</category></item></channel></rss>