← Back to Feed

CISA: Critical VMware RCE flaw now exploited by ransomware gangs

September 15, 2026 · BleepingComputer · Severity: CRITICAL

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned security teams that ransomware gangs have now joined ongoing attacks exploiting a critical VMware vCenter vulnerability patched in July.

Key Takeaways

  • CISA has warned that ransomware gangs are now exploiting a critical VMware vCenter RCE vulnerability patched in July.
  • The vulnerability (CVE-2026-47333) allows unauthenticated attackers to execute arbitrary code on vulnerable vCenter Server instances.
  • Organizations that have not yet patched their VMware vCenter deployments are at high risk of ransomware deployment via this vector.
☕ Buy a Coffee