Parallels Security Vulnerabilities (CVEs)

Track 24 security vulnerabilities affecting Parallels products and software. Get instant email alerts when new CVEs are discovered, automated security monitoring, and patch guidance.

1 Critical
22 High
1 Medium
🔔 Get Alerts for Parallels
CVE-2024-54189 7.8

A privilege escalation vulnerability in Parallels Desktop for Mac allows attackers to write to arbitrary files by exploiting hard links during snapsho...

Jun 3, 2025
CVE-2024-36486 7.8

This CVE describes a privilege escalation vulnerability in Parallels Desktop for Mac where the prl_vmarchiver tool writes decompressed archive content...

Jun 3, 2025
CVE-2025-0413 7.8

This vulnerability in Parallels Desktop's Technical Data Reporter component allows local attackers to escalate privileges by creating symbolic links t...

Feb 5, 2025
CVE-2024-6154 6.7

This is a heap-based buffer overflow vulnerability in Parallels Desktop's Toolgate component that allows local attackers to escalate privileges. Attac...

Jun 20, 2024
CVE-2023-50226 7.8

This vulnerability allows local attackers with low-privileged access to escalate to root privileges by exploiting a symbolic link issue in Parallels D...

May 3, 2024
CVE-2023-50228 7.8

This vulnerability in Parallels Desktop Updater allows local attackers to escalate privileges from low-privileged code execution to root-level access ...

May 3, 2024
CVE-2023-27326 8.2

This vulnerability allows local attackers with high-privileged code execution on a Parallels Desktop guest system to escalate privileges on the host s...

May 3, 2024
CVE-2023-27328 7.8

This vulnerability allows local attackers on Parallels Desktop guest systems to escalate privileges by exploiting XML injection in the Toolgate compon...

May 3, 2024
CVE-2023-27322 7.8

This vulnerability in Parallels Desktop Service allows local attackers with low-privileged access to escalate to root privileges due to improper envir...

May 3, 2024
CVE-2023-27324 7.8

This vulnerability allows local attackers to escalate privileges on affected Parallels Desktop installations by exploiting improper initialization of ...

May 3, 2024
CVE-2023-45894 10.0

This critical vulnerability in Parallels Remote Application Server allows remote attackers to escape application virtualization and execute arbitrary ...

Dec 14, 2023
CVE-2022-34889 8.2

This vulnerability in Parallels Desktop allows local attackers with high-privileged code execution on a guest VM to escalate privileges to hypervisor ...

Jul 18, 2022
CVE-2022-34891 7.8

CVE-2022-34891 is a local privilege escalation vulnerability in Parallels Desktop where incorrect file permissions allow attackers to escalate to root...

Jul 18, 2022
CVE-2022-34899 7.8

This is a local privilege escalation vulnerability in Parallels Access Agent that allows attackers with initial low-privileged access to gain root pri...

Jul 18, 2022
CVE-2022-34901 7.8

This vulnerability allows local attackers with low-privileged code execution on affected Parallels Access Agent installations to escalate privileges t...

Jul 18, 2022
CVE-2021-34987 8.2

This is a buffer overflow vulnerability in Parallels Desktop's HDAudio virtual device that allows local attackers with high-privileged code execution ...

Jul 15, 2022
CVE-2021-34868 8.8

This vulnerability in Parallels Desktop allows local attackers to escalate privileges from a guest VM to the hypervisor. Attackers must first execute ...

Jan 25, 2022
CVE-2020-8968 7.1

CVE-2020-8968 allows a local attacker to retrieve Parallels RAS profile passwords in clear text by uploading a previously stored encrypted file. This ...

Dec 17, 2021
CVE-2021-34856 8.8

This vulnerability in Parallels Desktop allows local attackers with high-privileged code execution on a guest system to escalate privileges to hypervi...

Oct 25, 2021
CVE-2021-31420 8.8

This is a local privilege escalation vulnerability in Parallels Desktop's Toolgate component. Attackers with low-privileged access to a guest VM can e...

Apr 29, 2021
CVE-2021-31422 7.5

This vulnerability allows local attackers with high-privileged code execution on a Parallels Desktop guest system to escalate privileges to hypervisor...

Apr 29, 2021
CVE-2021-31424 8.8

This is a heap-based buffer overflow vulnerability in Parallels Desktop's Open Tools Gate component that allows local attackers to escalate privileges...

Apr 29, 2021
CVE-2021-31426 8.8

This vulnerability in Parallels Desktop allows local attackers with initial low-privileged access to escalate privileges to kernel-level execution thr...

Apr 29, 2021
CVE-2021-31428 8.2

This is a heap-based buffer overflow vulnerability in Parallels Desktop's IDE virtual device that allows local attackers with high-privileged code exe...

Apr 29, 2021

Why Monitor Parallels Security Vulnerabilities?

Real-time CVE tracking: Our automated system monitors 24+ known vulnerabilities affecting Parallels products and software packages. Stay ahead of emerging threats with instant email notifications when new security issues are discovered.

Automated security monitoring: Unlike manual CVE checking, FixTheCVE automatically scans your servers and detects vulnerable Parallels packages in under 60 seconds. No agents required - completely agentless scanning that works across Parallels deployments.

Free vulnerability database: Access detailed information about every Parallels CVE including CVSS scores, severity ratings, affected versions, and actionable patch guidance. Filter by critical, high, medium, or low severity to prioritize your security remediation efforts.

🚀 Get Started in 60 Seconds

  • Register free account & add your servers
  • Run one-time scan or schedule automatic monitoring (every 1-24 hours)
  • Receive instant alerts when new Parallels CVEs affect your systems
  • Access dashboard with severity breakdown & fix instructions
Start Monitoring Parallels CVEs Free