VMware vCenter Critical RCE Exploited by Ransomware
CISA reportedly confirmed ransomware exploitation of VMware vCenter Server CVE-2026-59310, a CVSS 9.8 remote-code-execution vulnerability listed for accelerated remediation. Exposed vCenter systems should be treated as high-impact virtualization management-plane incidents: patch or isolate urgently and hunt for unauthorized access, persistence, and ransomware staging.
Sources (2)
Updated Sep 16, 2026