Out-of-bound read vulnerability in VMware Workstation 25H1 and below on any platform allows an actor with non-administrative privileges on a guest VM to obtain limited information disclosure from the machine where VMware Workstation is installed.
https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/36986
Source: Mitre, NVD
Published: 2026-02-27
Updated: 2026-03-02
Base Score: 1.2
Vector: CVSS2#AV:L/AC:H/Au:N/C:P/I:N/A:N
Severity: Low
Base Score: 2.7
Vector: CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:C/C:L/I:N/A:N
EPSS: 0.0002