Omnissa, LLC

First CVE: Feb 4, 2025Active for: 1 year
10
CVEs Published
More CVEs Published than 27% of tracked CNAs
5.0
Avg CVEs / Year
More Avg CVEs / Year than 32% of tracked CNAs
7.3
Avg CVSS Score
Higher Avg CVSS Score than 60% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%

Self-Reporting Analysis

Of all the CVEs published by Omnissa, LLC as a CNA, 20.0% affect products that Omnissa, LLC develops as a vendor.

20.0%
80.0%
Self-reported: 2Third-party: 8

Of all the CVEs published that affect products developed by Omnissa, LLC, 100.0% are self-published by Omnissa, LLC as a CNA.

100.0%
Self-published: 2Published by other CNAs: 0

Trends Over Time

The number and severity of CVEs published by Omnissa, LLC over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 4, 2025
17 months ago
Most Recent CVE
Jul 8, 2026
16 days ago

Top CVEs

All CVEs published by Omnissa, LLC as a CNA, regardless of affected vendor or product.

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Omnissa Workspace ONE UEM contains a Secondary Context Path Traversal Vulnerability. A malicious actor may be able to gain access to sensitive information by sending crafted GET re
Aug 11, 20257.553NOYES
Omnissa Workspace ONE® Tunnel for Windows addresses a Local Privilege Escalation Vulnerability.
Jul 8, 20267.834NONO
Omnissa Workspace ONE® Assist for macOS contains a Local Privilege Escalation Vulnerability.
Jun 9, 20267.831NONO
Server-Side Request Forgery (SSRF) in Omnissa Secure Email Gateway (SEG) in SEG prior to 2.32 running on Windows and SEG prior to 2503 running on UAG allows routing of network traf
Aug 11, 20258.628NONO
Omnissa Horizon Client for Windows contains an LPE Vulnerability. A malicious actor with local access where Horizon Client for Windows is installed may be able to elevate privilege
Apr 16, 20257.823NONO
Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a flaw in the installation process. Successful exploitation of this issue may allo
Feb 4, 20257.822NONO
Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a logic flaw. Successful exploitation of this issue may allow attackers with user
Feb 4, 20257.822NONO
Omnissa Workspace ONE UEM contains a Server-Side Request Forgery (SSRF) Vulnerability. A malicious actor with user privileges may be able to access restricted internal system infor
Aug 11, 20255.421NONO
Omnissa UAG contains a Cross-Origin Resource Sharing (CORS) bypass vulnerability. A malicious actor with network access to UAG may be able to bypass administrator-configured CORS r
Apr 17, 20257.521NONO
Omnissa Workspace ONE UEM contains an observable response discrepancy vulnerability. A malicious actor may be able to enumerate sensitive information such as tenant ID and user acc
Nov 12, 20255.320NONO

CVE Severity & Scoring

Severity distribution of CVEs published by this CNA10 CVEs
Severity distribution among all CVEs352,231 CVEs
MediumHigh
Attack Vector
Local5 (50.0%)
Network5 (50.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low10 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None10 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low6 (60.0%)
High0 (0.0%)
None4 (40.0%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this cna scope (10 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
1 CVE
10.0% of CVEs· 96th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID published by Omnissa, LLC as a CNA.

Media Mentions

Media articles that mention a CVE ID published by Omnissa, LLC as a CNA — matched by CVE ID, not by organization name.

Top Affected Vendors

Top Affected Products

Top CWEs