CVE-2023-20888: VMware vRealize Network Insight
High severity, CVSS 8.8. EPSS: 82.3% chance of exploitation in the next 30 days.
Aria Operations for Networks contains an authenticated deserialization vulnerability. A malicious actor with network access to VMware Aria Operations for Networks and valid 'member' role credentials may be able to perform a deserialization attack resulting in remote code execution.
Affected products
- VMware vRealize Network Insight: from 6.2.0, up to and including 6.10.0
Published 2023-06-07. Last modified 2026-06-17.