> Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
[DATE: 12/08/2026 09:01]
[LANGUAGE: EN]
Threat actors have begun to actively exploit a recently patched critical security flaw in Broadcom VMware vCenter, according to new findings from QUIRSO.
The vulnerability in question is CVE-2026-59310 (CVSS score: 9.8), a directory-traversal vulnerability in the VMware vCenter server that a malicious actor with network access can exploit to execute arbitrary code. Patches for the flaw were