VMware recently addressed several serious security flaws in their products, including ESXi, Workstation, and Fusion.
CVE-2025-22224: This critical flaw allows attackers to send malicious data to the system, causing it to behave unpredictably.
CVE-2025-22225: This vulnerability lets attackers write data into restricted areas of the system. By doing so, they can escape the virtual machine's sandbox (a protective barrier) and gain unauthorized access to the host system.
CVE-2025-22226: This flaw allows attackers to read sensitive information from the system's memory.
https://blogs.vmware.com/security/
#cybersecurity #vulnerability #cve #vmware #esxi #workstation #pro #player #fusion #cloud #heap_overflow