CVE-2026-59309
CRITICAL
CVSS: 9.8
EPSS: 7.9%
VulnCheck KEV
PoC Available
CWE-303
VMware vCenter contains an authentication bypass vulnerability in the VMware Directory Service. A malicious actor with network access to vCenter may exploit this issue to bypass authentication and gain unauthorized access to the system.
Published: 2026-07-30