{"schema_version":1,"title":"Broadcom vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 36 vulnerabilities in Broadcom: 6 in the last 7 days and 16 in the last 90 days, 13 of them critical and 11 exploited in the wild. The most recent, CVE-2026-85417, was published on 25 September 2026. 3 technologies have a page of their own.","url":"https://junglewise.ai/threats/vendors/broadcom","json_url":"https://junglewise.ai/threats/vendors/broadcom.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/broadcom","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":6,"all_time":36,"critical":13,"exploited":11,"last_7_days":6,"last_30_days":6,"last_90_days":16,"last_365_days":25},"latest":[{"cve":"CVE-2026-85417","epss":0.0019,"slug":"cve-2026-85417-incomplete-property-masking-in-the-sannav-logging-subsystem","title":"Brocade SANnav credential exposure in logging subsystem","severity":"info","exploited":false,"published_at":"2026-09-25T01:16:48.58+00:00","url":"https://junglewise.ai/threats/cve-2026-85417-incomplete-property-masking-in-the-sannav-logging-subsystem"},{"cve":"CVE-2026-14441","epss":0.0036,"slug":"cve-2026-14441-a-logic-flaw-in-java-cache-key-handling-object-comparison","title":"Broadcom Brocade SANnav comparison logic flaw in cache key handling","severity":"info","exploited":false,"published_at":"2026-09-24T21:17:10.67+00:00","url":"https://junglewise.ai/threats/cve-2026-14441-a-logic-flaw-in-java-cache-key-handling-object-comparison"},{"cve":"CVE-2026-82371","epss":0.0013,"slug":"cve-2026-82371-plaintext-exposure-of-sensitive-authentication-data-in-brocade","title":"Brocade SANnav plaintext exposure of authentication credentials in logs","severity":"info","exploited":false,"published_at":"2026-09-24T19:17:18.047+00:00","url":"https://junglewise.ai/threats/cve-2026-82371-plaintext-exposure-of-sensitive-authentication-data-in-brocade"},{"cve":"CVE-2026-67221","epss":0.002,"slug":"cve-2026-67221-rabbitmq-is-a-messaging-and-streaming-broker-prior-to-versions-3","title":"RabbitMQ AMQP 1.0 shovel password exposure in status API","severity":"info","exploited":false,"published_at":"2026-09-23T21:17:00.363+00:00","url":"https://junglewise.ai/threats/cve-2026-67221-rabbitmq-is-a-messaging-and-streaming-broker-prior-to-versions-3"},{"cve":"CVE-2026-67220","epss":0.0029,"slug":"cve-2026-67220-rabbitmq-is-a-messaging-and-streaming-broker-prior-to-versions-3","title":"RabbitMQ JMS topic exchange atom exhaustion denial of service","severity":"info","exploited":false,"published_at":"2026-09-23T21:17:00.22+00:00","url":"https://junglewise.ai/threats/cve-2026-67220-rabbitmq-is-a-messaging-and-streaming-broker-prior-to-versions-3"},{"cve":"CVE-2026-66079","epss":0.0032,"slug":"cve-2026-66079-rabbitmq-is-a-messaging-and-streaming-broker-prior-to-versions-3","title":"RabbitMQ AMQP 1.0 array32 denial of service","severity":"info","exploited":false,"published_at":"2026-09-23T20:17:13.15+00:00","url":"https://junglewise.ai/threats/cve-2026-66079-rabbitmq-is-a-messaging-and-streaming-broker-prior-to-versions-3"},{"cve":"CVE-2026-63335","cvss":4,"epss":0.0052,"slug":"cve-2026-63335-rabbitmq-java-client-denial-of-service-via-malformed-amqp-frame","title":"RabbitMQ Java client denial of service via malformed AMQP frame","severity":"medium","exploited":false,"published_at":"2026-08-18T16:32:42+00:00","url":"https://junglewise.ai/threats/cve-2026-63335-rabbitmq-java-client-denial-of-service-via-malformed-amqp-frame"},{"cve":"CVE-2026-59310","cvss":9.8,"epss":0.0257,"slug":"cve-2026-59310-vmware-vcenter-directory-traversal-in-syslog-server","title":"VMware vCenter directory traversal in Syslog server","severity":"critical","exploited":true,"published_at":"2026-07-30T13:16:53.993+00:00","url":"https://junglewise.ai/threats/cve-2026-59310-vmware-vcenter-directory-traversal-in-syslog-server"},{"cve":"CVE-2026-59327","cvss":4.4,"slug":"cve-2026-59327-spring-tools-for-eclipse-cleartext-storage-of-devtools-secret","title":"Spring Tools for Eclipse cleartext storage of DevTools secret","severity":"medium","exploited":false,"published_at":"2026-07-30T06:25:55.797+00:00","url":"https://junglewise.ai/threats/cve-2026-59327-spring-tools-for-eclipse-cleartext-storage-of-devtools-secret"},{"cve":"CVE-2026-59326","cvss":3.3,"slug":"cve-2026-59326-spring-boot-language-server-credential-disclosure-in-proxy-logs","title":"Spring Boot language server credential disclosure in proxy logs","severity":"low","exploited":false,"published_at":"2026-07-30T06:25:55.677+00:00","url":"https://junglewise.ai/threats/cve-2026-59326-spring-boot-language-server-credential-disclosure-in-proxy-logs"},{"cve":"CVE-2026-47873","cvss":8,"slug":"cve-2026-47873-spring-tools-for-eclipse-insecure-port-binding-in-boot-dashboard","title":"Spring Tools for Eclipse insecure port binding in Boot Dashboard Docker integration","severity":"high","exploited":false,"published_at":"2026-07-30T06:25:52.253+00:00","url":"https://junglewise.ai/threats/cve-2026-47873-spring-tools-for-eclipse-insecure-port-binding-in-boot-dashboard"},{"cve":"CVE-2026-47858","cvss":8,"slug":"cve-2026-47858-spring-tools-jmx-remote-code-execution-in-live-information-mode","title":"Spring Tools JMX remote code execution in live information mode","severity":"high","exploited":false,"published_at":"2026-07-30T06:25:52.12+00:00","url":"https://junglewise.ai/threats/cve-2026-47858-spring-tools-jmx-remote-code-execution-in-live-information-mode"},{"cve":"CVE-2026-57219","cvss":8.7,"slug":"cve-2026-57219-rabbitmq-information-disclosure-in-management-api-auth-endpoint","title":"RabbitMQ information disclosure in management API auth endpoint","severity":"info","exploited":false,"published_at":"2026-07-10T21:16:59.06+00:00","url":"https://junglewise.ai/threats/cve-2026-57219-rabbitmq-information-disclosure-in-management-api-auth-endpoint"},{"cve":"CVE-2026-57216","cvss":6.8,"slug":"cve-2026-57216-rabbitmq-authentication-bypass-for-loopback-restricted-users","title":"RabbitMQ authentication bypass for loopback-restricted users","severity":"medium","exploited":false,"published_at":"2026-07-10T21:16:58.677+00:00","url":"https://junglewise.ai/threats/cve-2026-57216-rabbitmq-authentication-bypass-for-loopback-restricted-users"},{"cve":"CVE-2026-57215","cvss":7,"slug":"cve-2026-57215-rabbitmq-incorrect-authorization-in-amq-rabbitmq-reply-to","title":"RabbitMQ incorrect authorization in amq.rabbitmq.reply-to bindings","severity":"info","exploited":false,"published_at":"2026-07-10T21:16:58.55+00:00","url":"https://junglewise.ai/threats/cve-2026-57215-rabbitmq-incorrect-authorization-in-amq-rabbitmq-reply-to"},{"cve":"CVE-2026-57212","cvss":7.1,"slug":"cve-2026-57212-rabbitmq-resource-exhaustion-in-management-http-api-via-oversized","title":"RabbitMQ resource exhaustion in management HTTP API via oversized JSON","severity":"info","exploited":false,"published_at":"2026-07-10T21:16:58.15+00:00","url":"https://junglewise.ai/threats/cve-2026-57212-rabbitmq-resource-exhaustion-in-management-http-api-via-oversized"},{"cve":"CVE-2026-47838","cvss":6.8,"epss":0.0019,"slug":"cve-2026-47838-vmware-spring-security-user-impersonation-in","title":"VMware Spring Security user impersonation in SubjectDnX509PrincipalExtractor","severity":"medium","exploited":false,"published_at":"2026-06-10T00:16:54.897+00:00","url":"https://junglewise.ai/threats/cve-2026-47838-vmware-spring-security-user-impersonation-in"},{"cve":"CVE-2026-8370","cvss":8.5,"slug":"cve-2026-8370-broadcom-automic-automation-agent-unix-privilege-escalation","title":"Broadcom Automic Automation Agent Unix privilege escalation","severity":"info","exploited":false,"published_at":"2026-05-19T19:16:51.903+00:00","url":"https://junglewise.ai/threats/cve-2026-8370-broadcom-automic-automation-agent-unix-privilege-escalation"},{"cve":"CVE-2026-41713","cvss":8.2,"epss":0.0035,"slug":"cve-2026-41713-vmware-spring-ai-prompt-injection-in-conversation-memory","title":"VMware Spring AI prompt injection in conversation memory","severity":"high","exploited":false,"published_at":"2026-05-12T11:16:19.517+00:00","url":"https://junglewise.ai/threats/cve-2026-41713-vmware-spring-ai-prompt-injection-in-conversation-memory"},{"cve":"CVE-2026-41712","cvss":7.5,"epss":0.0042,"slug":"cve-2026-41712-vmware-spring-ai-data-exposure-in-chat-memory-component","title":"VMware Spring AI data exposure in chat memory component","severity":"high","exploited":false,"published_at":"2026-05-12T11:16:19.403+00:00","url":"https://junglewise.ai/threats/cve-2026-41712-vmware-spring-ai-data-exposure-in-chat-memory-component"},{"cve":"CVE-2026-22741","cvss":3.1,"epss":0.0024,"slug":"cve-2026-22741-spring-framework-cache-poisoning-in-static-resource-resolution","title":"Spring Framework cache poisoning in static resource resolution","severity":"low","exploited":false,"published_at":"2026-04-29T12:33:07+00:00","url":"https://junglewise.ai/threats/cve-2026-22741-spring-framework-cache-poisoning-in-static-resource-resolution"},{"cve":"CVE-2026-22751","cvss":4.8,"epss":0.0012,"slug":"cve-2026-22751-spring-spring-security-toctou-race-condition-in","title":"Spring Spring Security TOCTOU race condition in JdbcOneTimeTokenService","severity":"medium","exploited":false,"published_at":"2026-04-21T21:31:23+00:00","url":"https://junglewise.ai/threats/cve-2026-22751-spring-spring-security-toctou-race-condition-in"},{"cve":"CVE-2026-22719","cvss":8.1,"epss":0.021,"slug":"cve-2026-22719-broadcom-vmware-aria-operations-command-injection-during","title":"Broadcom VMware Aria Operations command injection during migration","severity":"critical","exploited":true,"published_at":"2026-03-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2026-22719-broadcom-vmware-aria-operations-command-injection-during"},{"cve":"CVE-2024-37079","cvss":9.8,"epss":0.8205,"slug":"cve-2024-37079-broadcom-vmware-vcenter-server-out-of-bounds-write-in-dcerpc","title":"Broadcom VMware vCenter Server out-of-bounds write in DCERPC protocol","severity":"critical","exploited":true,"published_at":"2026-01-23T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-37079-broadcom-vmware-vcenter-server-out-of-bounds-write-in-dcerpc"},{"cve":"CVE-2025-41244","cvss":7.8,"epss":0.0059,"slug":"cve-2025-41244-broadcom-vmware-aria-operations-and-vmware-tools-privilege","title":"Broadcom VMware Aria Operations and VMware Tools privilege escalation","severity":"critical","exploited":true,"published_at":"2025-10-30T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-41244-broadcom-vmware-aria-operations-and-vmware-tools-privilege"}],"vendor":{"hub":true,"name":"Broadcom","slug":"broadcom","homepage":"https://www.broadcom.com/","description":"A global technology leader that designs, develops, and supplies semiconductor and infrastructure software solutions, including the Spring framework via its VMware Tanzu division.","url":"https://junglewise.ai/threats/vendors/broadcom"},"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":4},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":1,"exploited":1,"vulnerabilities":5},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":1},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":6}],"most_severe":[{"cve":"CVE-2024-37079","cvss":9.8,"epss":0.8205,"slug":"cve-2024-37079-broadcom-vmware-vcenter-server-out-of-bounds-write-in-dcerpc","title":"Broadcom VMware vCenter Server out-of-bounds write in DCERPC protocol","severity":"critical","exploited":true,"published_at":"2026-01-23T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-37079-broadcom-vmware-vcenter-server-out-of-bounds-write-in-dcerpc"},{"cve":"CVE-2026-59310","cvss":9.8,"epss":0.0257,"slug":"cve-2026-59310-vmware-vcenter-directory-traversal-in-syslog-server","title":"VMware vCenter directory traversal in Syslog server","severity":"critical","exploited":true,"published_at":"2026-07-30T13:16:53.993+00:00","url":"https://junglewise.ai/threats/cve-2026-59310-vmware-vcenter-directory-traversal-in-syslog-server"},{"cve":"CVE-2024-38812","cvss":9.8,"slug":"cve-2024-38812-vmware-vcenter-server-heap-based-buffer-overflow-vulnerability","title":"VMware vCenter Server Heap-Based Buffer Overflow Vulnerability","severity":"critical","exploited":true,"published_at":"2024-11-20T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-38812-vmware-vcenter-server-heap-based-buffer-overflow-vulnerability"},{"cve":"CVE-2024-38813","cvss":9.8,"slug":"cve-2024-38813-vmware-vcenter-server-privilege-escalation-vulnerability","title":"VMware vCenter Server Privilege Escalation Vulnerability","severity":"critical","exploited":true,"published_at":"2024-11-20T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2024-38813-vmware-vcenter-server-privilege-escalation-vulnerability"},{"cve":"CVE-2023-34048","cvss":9.8,"slug":"cve-2023-34048-vmware-vcenter-server-out-of-bounds-write-vulnerability","title":"VMware vCenter Server Out-of-Bounds Write Vulnerability","severity":"critical","exploited":true,"published_at":"2024-01-22T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2023-34048-vmware-vcenter-server-out-of-bounds-write-vulnerability"},{"cve":"CVE-2026-22719","cvss":8.1,"epss":0.021,"slug":"cve-2026-22719-broadcom-vmware-aria-operations-command-injection-during","title":"Broadcom VMware Aria Operations command injection during migration","severity":"critical","exploited":true,"published_at":"2026-03-03T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2026-22719-broadcom-vmware-aria-operations-command-injection-during"},{"cve":"CVE-2025-41244","cvss":7.8,"epss":0.0059,"slug":"cve-2025-41244-broadcom-vmware-aria-operations-and-vmware-tools-privilege","title":"Broadcom VMware Aria Operations and VMware Tools privilege escalation","severity":"critical","exploited":true,"published_at":"2025-10-30T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-41244-broadcom-vmware-aria-operations-and-vmware-tools-privilege"},{"cve":"CVE-2025-1976","cvss":6.7,"slug":"cve-2025-1976-broadcom-brocade-fabric-os-code-injection-vulnerability","title":"Broadcom Brocade Fabric OS Code Injection Vulnerability","severity":"critical","exploited":true,"published_at":"2025-04-28T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2025-1976-broadcom-brocade-fabric-os-code-injection-vulnerability"},{"cve":"CVE-2022-22948","cvss":6.5,"slug":"cve-2022-22948-vmware-vcenter-server-incorrect-default-file-permissions","title":"VMware vCenter Server Incorrect Default File Permissions Vulnerability","severity":"critical","exploited":true,"published_at":"2024-07-17T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2022-22948-vmware-vcenter-server-incorrect-default-file-permissions"},{"cve":"CVE-2021-21973","cvss":5.3,"slug":"cve-2021-21973-vmware-vcenter-server-and-cloud-foundation-server-side-request","title":"VMware vCenter Server and Cloud Foundation Server Side Request Forgery (SSRF) Vulnerability","severity":"critical","exploited":true,"published_at":"2022-03-07T00:00:00+00:00","url":"https://junglewise.ai/threats/cve-2021-21973-vmware-vcenter-server-and-cloud-foundation-server-side-request"}],"generated_at":"2026-09-26T14:07:00.158513+00:00","technologies":[{"name":"Broadcom vCenter Server","slug":"vcenter-server","vulnerabilities":8,"url":"https://junglewise.ai/threats/technologies/vcenter-server"},{"name":"Broadcom RabbitMQ Server","slug":"rabbitmq-server","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/rabbitmq-server"},{"name":"Broadcom Spring Tools for Eclipse","slug":"spring-tools-for-eclipse","vulnerabilities":4,"url":"https://junglewise.ai/threats/technologies/spring-tools-for-eclipse"}]}