📦 Workstation

by Vmware

🔍 What is Workstation?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-22224

CRITICAL CVSS 9.3 Mar 4, 2025

This CVE describes a TOCTOU vulnerability in VMware ESXi and Workstation that allows local administrative users within a virtual machine to execute arbitrary code on the host system via the VMX proces...

CVE-2024-22267

CRITICAL CVSS 9.3 May 14, 2024

CVE-2024-22267 is a use-after-free vulnerability in VMware Workstation and Fusion's vbluetooth device that allows a malicious actor with local administrative privileges on a virtual machine to execute...

CVE-2024-22252

CRITICAL CVSS 9.3 Mar 5, 2024

This CVE describes a use-after-free vulnerability in VMware's XHCI USB controller that allows a malicious actor with local administrative privileges on a virtual machine to execute code on the host sy...

CVE-2025-22226

HIGH CVSS 7.1 Mar 4, 2025

This vulnerability allows attackers with administrative privileges on a virtual machine to read memory from the host's vmx process, potentially exposing sensitive information. It affects VMware ESXi, ...

CVE-2024-22269

HIGH CVSS 7.1 May 14, 2024

This vulnerability allows a malicious actor with local administrative privileges on a VMware virtual machine to read privileged information from hypervisor memory via the vbluetooth device. It affects...

CVE-2023-34044

HIGH CVSS 7.1 Oct 20, 2023

This vulnerability allows an attacker with local administrative privileges on a VMware virtual machine to read privileged information from hypervisor memory via an out-of-bounds read in Bluetooth devi...

CVE-2023-20869

HIGH CVSS 8.2 Apr 25, 2023

This vulnerability allows attackers to execute arbitrary code on the host system by exploiting a stack-based buffer overflow in VMware's Bluetooth sharing functionality. It affects users running VMwar...

CVE-2023-20854

HIGH CVSS 8.4 Feb 3, 2023

CVE-2023-20854 is an arbitrary file deletion vulnerability in VMware Workstation that allows local authenticated users to delete any files on the system where Workstation is installed. This affects us...

CVE-2021-22045

HIGH CVSS 7.8 Jan 4, 2022

This CVE describes a heap-overflow vulnerability in VMware's CD-ROM device emulation that could allow a malicious actor with access to a virtual machine to potentially execute code on the hypervisor. ...