📦 Vm Virtualbox

by Oracle

🔍 What is Vm Virtualbox?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2026-21986

HIGH CVSS 7.1 Jan 20, 2026

An unauthenticated local attacker can cause a denial-of-service (DoS) crash in Oracle VM VirtualBox on Windows hosts. This vulnerability affects VirtualBox versions 7.1.14 and 7.2.4 running Windows vi...

CVE-2026-21987

HIGH CVSS 8.2 Jan 20, 2026

A high-severity vulnerability in Oracle VM VirtualBox allows attackers with local high-privilege access to compromise the virtualization software, potentially leading to full system takeover. This aff...

CVE-2026-21988

HIGH CVSS 8.2 Jan 20, 2026

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to completely compromise the VirtualBox software. The attack can potentially impact ot...

CVE-2026-21989

HIGH CVSS 8.1 Jan 20, 2026

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to compromise VirtualBox, potentially affecting other products through scope change. S...

CVE-2026-21990

HIGH CVSS 8.2 Jan 20, 2026

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to completely compromise the VirtualBox software. The attack could potentially affect ...

CVE-2026-21982

HIGH CVSS 7.5 Jan 20, 2026

This vulnerability in Oracle VM VirtualBox allows an unauthenticated attacker on the same physical network segment to potentially take complete control of the virtualization software. It affects Virtu...

CVE-2026-21983

HIGH CVSS 7.5 Jan 20, 2026

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to potentially compromise the VirtualBox software, leading to full takeover. The attac...

CVE-2026-21984

HIGH CVSS 7.5 Jan 20, 2026

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to potentially compromise the virtualization software, leading to complete takeover. T...

CVE-2025-62588

HIGH CVSS 8.2 Oct 21, 2025

A high-severity vulnerability in Oracle VM VirtualBox Core allows attackers with local system access to compromise the virtualization software, potentially leading to host takeover. This affects Virtu...

CVE-2025-62589

HIGH CVSS 8.2 Oct 21, 2025

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to completely compromise the VirtualBox software, potentially leading to takeover of t...

CVE-2025-62641

HIGH CVSS 8.2 Oct 21, 2025

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to completely compromise the VirtualBox software, potentially leading to host takeover...

CVE-2025-61760

HIGH CVSS 7.5 Oct 21, 2025

This vulnerability in Oracle VM VirtualBox allows a low-privileged attacker with local access to the host system to potentially take over VirtualBox through a difficult-to-exploit attack requiring hum...

CVE-2025-53024

HIGH CVSS 8.2 Jul 15, 2025

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to completely compromise the VirtualBox software, potentially leading to host takeover...

CVE-2025-53027

HIGH CVSS 8.2 Jul 15, 2025

A local privilege escalation vulnerability in Oracle VM VirtualBox 7.1.10 allows attackers with high privileges on the host system to compromise the VirtualBox software. This can lead to complete take...

CVE-2025-30712

HIGH CVSS 8.1 Apr 15, 2025

This vulnerability in Oracle VM VirtualBox 7.1.6 allows a high-privileged attacker with local access to compromise the virtualization software, potentially affecting other products running on the same...

CVE-2025-21571

HIGH CVSS 7.3 Jan 21, 2025

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to compromise the virtualization software, potentially affecting other products running on the same infra...

CVE-2024-21259

HIGH CVSS 7.5 Oct 15, 2024

This CVE describes a vulnerability in Oracle VM VirtualBox that allows a high-privileged attacker with local access to the host system to potentially compromise the VirtualBox software. The vulnerabil...

CVE-2024-21141

HIGH CVSS 8.2 Jul 16, 2024

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to completely compromise the VirtualBox software, potentially leading to takeover of t...

CVE-2024-21114

HIGH CVSS 8.8 Apr 16, 2024

This vulnerability in Oracle VM VirtualBox allows a low-privileged attacker with local access to the host system to compromise the VirtualBox software, potentially leading to full system takeover. It ...

CVE-2024-21116

HIGH CVSS 7.8 Apr 16, 2024

This vulnerability in Oracle VM VirtualBox allows a low-privileged attacker with local access to a Linux host system to completely compromise the VirtualBox software, potentially leading to full syste...

CVE-2024-21110

HIGH CVSS 7.3 Apr 16, 2024

This vulnerability in Oracle VM VirtualBox allows a low-privileged local attacker to gain complete control over the virtualization software when a user performs certain actions. It affects VirtualBox ...

CVE-2024-21112

HIGH CVSS 8.8 Apr 16, 2024

This vulnerability in Oracle VM VirtualBox allows a low-privileged attacker with local access to the host system to compromise VirtualBox, potentially leading to full system takeover. It affects Virtu...

CVE-2024-21103

HIGH CVSS 7.8 Apr 16, 2024

This vulnerability in Oracle VM VirtualBox allows a low-privileged attacker with local access to a Linux host to completely compromise the VirtualBox software, potentially gaining full control over vi...

CVE-2023-22098

HIGH CVSS 8.2 Oct 17, 2023

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to compromise VirtualBox, potentially leading to full system takeover. It affects Virt...

CVE-2023-22100

HIGH CVSS 7.9 Oct 17, 2023

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to compromise the virtualization software, potentially leading to unauthorized access to critical data or...

CVE-2023-21987

HIGH CVSS 7.8 Apr 18, 2023

This vulnerability in Oracle VM VirtualBox allows a low-privileged attacker with local access to the host system to potentially compromise the VirtualBox software and impact other products. It affects...

CVE-2023-21990

HIGH CVSS 8.2 Apr 18, 2023

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to compromise VirtualBox and potentially impact other products through scope change. S...

CVE-2022-21491

HIGH CVSS 7.8 Apr 19, 2022

This vulnerability in Oracle VM VirtualBox allows a low-privileged attacker with local access to the Windows host system to completely compromise the VirtualBox software. Successful exploitation resul...

CVE-2021-35538

HIGH CVSS 7.8 Oct 20, 2021

This vulnerability in Oracle VM VirtualBox allows a low-privileged local attacker to gain full control of the virtualization software, potentially compromising all virtual machines. It affects Virtual...

CVE-2021-2443

HIGH CVSS 7.3 Jul 21, 2021

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to cause denial of service, modify data, or read sensitive information. It affects Solaris x86 and Linux ...

CVE-2021-2309

HIGH CVSS 7.5 Apr 22, 2021

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to compromise the virtualization software, potentially leading to full takeover. It af...

CVE-2021-2264

HIGH CVSS 8.4 Apr 22, 2021

This vulnerability in Oracle VM VirtualBox allows a low-privileged local attacker to compromise the virtualization software, potentially gaining unauthorized access to critical data or modifying/delet...

CVE-2021-2279

HIGH CVSS 8.1 Apr 22, 2021

This vulnerability in Oracle VM VirtualBox allows an unauthenticated attacker with network access via RDP to potentially take over the VirtualBox instance. It affects VirtualBox versions prior to 6.1....

CVE-2021-2281

HIGH CVSS 7.1 Apr 22, 2021

This vulnerability in Oracle VM VirtualBox allows an unauthenticated attacker with local access to the host system to compromise the VirtualBox installation. The attacker can create, delete, or modify...

CVE-2021-2283

HIGH CVSS 7.1 Apr 22, 2021

This vulnerability in Oracle VM VirtualBox allows an unauthenticated attacker with local access to the host system to access sensitive data from the VirtualBox application. It affects VirtualBox insta...

CVE-2021-2285

HIGH CVSS 7.1 Apr 22, 2021

This vulnerability in Oracle VM VirtualBox allows an unauthenticated attacker with local access to the host system to access sensitive data from the VirtualBox application. It affects VirtualBox insta...

CVE-2021-2287

HIGH CVSS 7.1 Apr 22, 2021

This vulnerability in Oracle VM VirtualBox allows an unauthenticated attacker with local access to the host system to access sensitive data from the VirtualBox application. It affects VirtualBox insta...

CVE-2021-2250

HIGH CVSS 8.2 Apr 22, 2021

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to completely compromise the VirtualBox software. The attack could potentially impact ...

CVE-2026-21985

MEDIUM CVSS 6.0 Jan 20, 2026

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to access sensitive data from VirtualBox. It affects VirtualBox versions 7.1.14 and 7....

CVE-2026-21981

MEDIUM CVSS 4.6 Jan 20, 2026

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to read some VirtualBox data and cause partial denial of service. The attack can impac...

CVE-2025-62591

MEDIUM CVSS 6.0 Oct 21, 2025

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to access sensitive data from VirtualBox and potentially other products running on the...

CVE-2025-62592

MEDIUM CVSS 6.0 Oct 21, 2025

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to access sensitive data from the virtualization software. It affects VirtualBox versi...

CVE-2025-61759

MEDIUM CVSS 6.5 Oct 21, 2025

A local privilege escalation vulnerability in Oracle VM VirtualBox allows authenticated attackers with low privileges on the host system to access sensitive data from VirtualBox. This affects VirtualB...

CVE-2025-53030

MEDIUM CVSS 6.0 Jul 15, 2025

This vulnerability in Oracle VM VirtualBox 7.1.10 allows a high-privileged attacker with local access to the host system to access sensitive data from VirtualBox and potentially other connected system...

CVE-2025-53026

MEDIUM CVSS 6.0 Jul 15, 2025

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to access sensitive data from the virtualization software. It affects users running Vi...

CVE-2025-21533

MEDIUM CVSS 5.5 Jan 21, 2025

This vulnerability in Oracle VM VirtualBox allows a low-privileged attacker with local access to the host system to access sensitive data from VirtualBox. It affects VirtualBox versions prior to 7.0.2...

CVE-2024-21273

MEDIUM CVSS 6.0 Oct 15, 2024

This vulnerability in Oracle VM VirtualBox allows a high-privileged attacker with local access to the host system to access sensitive data from VirtualBox and potentially other connected systems. It a...

CVE-2024-21263

MEDIUM CVSS 6.1 Oct 15, 2024

This vulnerability in Oracle VM VirtualBox allows authenticated attackers with local access to cause denial of service (crashes/hangs) and potentially read sensitive data from the application. It affe...

CVE-2024-21248

MEDIUM CVSS 5.3 Oct 15, 2024

This vulnerability in Oracle VM VirtualBox allows a low-privileged attacker with local access to compromise the virtualization software, potentially affecting other products running on the same host. ...

CVE-2024-21161

MEDIUM CVSS 5.5 Jul 16, 2024

This vulnerability in Oracle VM VirtualBox allows a low-privileged attacker with local access to a Linux host to cause a denial of service (DoS) by crashing or hanging the VirtualBox application. Only...