CVE-2019-5526: VMware Workstation

High severity, CVSS 7.8. EPSS: 9% chance of exploitation in the next 30 days.

VMware Workstation (15.x before 15.1.0) contains a DLL hijacking issue because some DLL files are improperly loaded by the application. Successful exploitation of this issue may allow attackers with normal user privileges to escalate their privileges to administrator on a windows host where Workstation is installed.

Affected products

  • VMware Workstation: from 15.0.0, before 15.1.0 (fixed in 15.1.0)

Published 2019-05-15. Last modified 2026-06-17.