VMWare Workstation and Fusion contain a logic flaw in the management of network packets. 

Known attack vectors: A malicious actor with administrative privileges on a Guest VM may be able to interrupt or intercept network connections of other Guest VM's. 

Resolution: To remediate CVE-2026-22715 please upgrade to VMware Workstation or Fusion Version 25H2U1
Advisories

No advisories yet.

Fixes

Solution

To remediate CVE-2026-22715 please upgrade to VMwate Workstation or Fusion Version 25H2U1


Workaround

No workaround given by the vendor.

History

Thu, 26 Feb 2026 19:15:00 +0000

Type Values Removed Values Added
Description VMWare Workstation and Fusion contain a logic flaw in the management of network packets.  Known attack vectors: A malicious actor with administrative privileges on a Guest VM may be able to interrupt or intercept network connections of other Guest VM's.  Resolution: To remediate CVE-2026-22715 please upgrade to VMware Workstation or Fusion Version 25H2U1
Title VMware Workstation/Fusion NAT vulnerability
References
Metrics cvssV3_1

{'score': 5.9, 'vector': 'CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:L'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: vmware

Published:

Updated: 2026-02-26T18:36:41.929Z

Reserved: 2026-01-09T06:54:36.840Z

Link: CVE-2026-22715

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-02-26T19:32:37.893

Modified: 2026-02-26T19:32:37.893

Link: CVE-2026-22715

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses

No weakness.