CVE-2025-22225High· 8.2▾ Abyssal⚠ Exploited in the wild0dayVMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox.
▾ Abyssal zone — Critical with a public exploit or in-the-wild use
impact 45.1 · likelihood 0.2 · exploitation 25 · ransomware 5
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Aug 4.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Federal remediation due Mar 25, 2025
Last analysed / modified upstream
1.0%
Added to the CISA catalog on Mar 4, 2025. Federal remediation due Mar 25, 2025. View catalog ↗
VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox.
esxi = 7.0esxi = 8.0cloud_foundationtelco_cloud_infrastructure = 2.2telco_cloud_infrastructure = 2.5telco_cloud_infrastructure = 2.7telco_cloud_infrastructure = 3.0telco_cloud_platform = 2.0telco_cloud_platform = 2.5telco_cloud_platform = 2.7telco_cloud_platform = 3.0telco_cloud_platform = 4.0telco_cloud_platform = 4.0.1telco_cloud_platform = 5.0Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2021-21975High· 7.5Server Side Request Forgery in vRealize Operations Manager API (CVE-2021-21975) prior to 8.4 may allow a malicious actor with network access to the vRealize Operations Manager API can perform a Server Side Request Forgery attack to steal…
CVE-2021-21972Critical· 9.8The vSphere Client (HTML5) contains a remote code execution vulnerability in a vCenter Server plugin
CVE-2020-3992Critical· 9.8OpenSLP as used in VMware ESXi (7.0 before ESXi_7.0.1-0.0.16850804, 6.7 before ESXi670-202010401-SG, 6.5 before ESXi650-202010401-SG) has a use-after-free issue
CVE-2022-0995High· 7.8An out-of-bounds (OOB) memory write flaw was found in the Linux kernel’s watch_queue event notification subsystem
CVE-2020-1054High· 7.0An elevation of privilege vulnerability exists in Windows when the Windows kernel-mode driver fails to properly handle objects in memory
CVE-2021-4034High· 7.8A local privilege escalation vulnerability was found on polkit's pkexec utility