Multiple critical vulnerabilities, including CVE-2026-59309 and CVE-2026-59310 with CVSS 9.8, affect VMware vCenter and ESX/ESXi products, enabling unauthorized access without credentials, arbitrary code execution, virtualization escape, information disclosure, and defense evasion, which could lead to full system compromise and data breaches.
PoC
VMware vCenter +13
virtualization
critical-vulnerability
rce
unauthorized-access
privilege-escalation
defense-evasion
esxi
vcenter
5t
5c
updated