← Back to Feed
CISA: Critical VMware RCE flaw now exploited by ransomware gangs
September 15, 2026 · BleepingComputer · Severity: CRITICAL
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) warned security teams that ransomware gangs have now joined ongoing attacks exploiting a critical VMware vCenter vulnerability patched in July.
Key Takeaways
- CISA has warned that ransomware gangs are now exploiting a critical VMware vCenter RCE vulnerability patched in July.
- The vulnerability (CVE-2026-47333) allows unauthenticated attackers to execute arbitrary code on vulnerable vCenter Server instances.
- Organizations that have not yet patched their VMware vCenter deployments are at high risk of ransomware deployment via this vector.