Cloud Foundation

Vendor:

First CVE: Oct 18, 2019 · Active for 6 years

136
Total CVEs
More Total CVEs than 99% of tracked products
17.0
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
7.2
Avg CVSS
Higher Avg CVSS than 43% of tracked products
14.0%
KEV Rate
Higher KEV Rate than 98% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Cloud Foundation over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 18, 2019
6 years ago
Most Recent CVE
Jun 8, 2026
46 days ago

CVE Severity & Scoring

Cloud Foundation136 CVEs
All CVEs352,294 CVEs
LowMediumHighCritical
Attack Vector
Local44 (32.4%)
Network91 (66.9%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network1 (0.7%)
Attack Complexity
Low125 (91.9%)
High11 (8.1%)
Unknown0 (0.0%)
User Interaction
None120 (88.2%)
Unknown0 (0.0%)
Required16 (11.8%)
Privileges Required
Low45 (33.1%)
High39 (28.7%)
None52 (38.2%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (136 CVEs).

136 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin. A malicious actor with network access to port 443 may exploit this issue to ex
Feb 24, 20219.899YESYES
VMware Workspace ONE Access and Identity Manager contain a remote code execution vulnerability due to server-side template injection. A malicious actor with network access can trig
Apr 11, 20229.898YESYES
The vCenter Server contains an arbitrary file upload vulnerability in the Analytics service. A malicious actor with network access to port 443 on vCenter Server may exploit this is
Sep 23, 20219.898YESYES
The vSphere Client (HTML5) contains a remote code execution vulnerability due to lack of input validation in the Virtual SAN Health Check plug-in which is enabled by default in vCe
May 26, 20219.898YESYES
Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API
Mar 31, 20217.596YESYES
The vSphere Client (HTML5) contains an SSRF (Server Side Request Forgery) vulnerability due to improper validation of URLs in a vCenter Server plugin. A malicious actor with networ
Feb 24, 20215.394YESYES
OpenSLP as used in VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202010401-SG, 6.5 before ESXi650-202010401-SG) has a use-after-free issue. A malicious actor
Oct 20, 20209.894YESNO
The vCenter Server contains a heap-overflow vulnerability in the implementation of the DCERPC protocol. A malicious actor with network access to vCenter Server may trigger this vul
Sep 17, 20249.890YESNO
VMware Workspace ONE Access, Identity Manager and vRealize Automation contain a privilege escalation vulnerability due to improper permissions in support scripts. A malicious actor
Apr 13, 20227.887YESYES
VMware Aria Operations contains a command injection vulnerability. A malicious unauthenticated actor may exploit this issue to execute arbitrary commands which may lead to remote c
Feb 25, 20268.181YESNO

Exploit Exposure

Signals from CVEs in this product scope (136 CVEs).

CISA KEV
19 CVEs
14.0% of CVEs· 98th percentile
Metasploit
11 CVEs
8.1% of CVEs· 97th percentile
Nuclei
9 CVEs
6.6% of CVEs· 97th percentile
ExploitDB
1 CVE
0.7% of CVEs· 87th percentile

Social Chatter

Signals from CVEs in this product scope (136 CVEs).

Media Mentions

Signals from CVEs in this product scope (136 CVEs).

Top CNAs Publishing CVEs For Cloud Foundation

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
9.126.70.4%00
5.027.50.6%00
4.518.80.3%00
4.4.1.146.012.1%00
4.4.146.012.1%00
4.446.012.1%00
4.3.1118.80.3%00
4.3.146.526.5%01
4.346.526.5%01
4.2.167.318.1%01
4.246.526.5%01
4.1.0.167.318.1%01
4.167.318.1%01
4.0.197.431.0%23
4.0107.528.0%23
3.9.156.550.1%13
3.956.550.1%13
3.8.156.550.1%13
3.856.550.1%13
3.7.256.550.1%13