Broadcom disclosed severe vulnerabilities in VMware platforms, including CVE-2026-59309, which permits unauthenticated attackers to bypass authentication and seize control of the vCenter management plane. Additionally, CVE-2026-59310 enables remote code execution through directory traversal in the vCenter Syslog server. These flaws pose significant risks to financial institutions relying on VMware infrastructure for critical operations.

Relevant URL: https://cybersecuritynews.com/vmware-flaws-allow-authentication-bypass/