CVE-2024-22240: VMware Aria Operations for Networks

Medium severity, CVSS 4.9. EPSS: 0.6% chance of exploitation in the next 30 days.

Aria Operations for Networks contains a local file read vulnerability. A malicious actor with admin privileges may exploit this vulnerability leading to unauthorized access to sensitive information.

Affected products

  • VMware Aria Operations for Networks: from 6.0.0, up to and including 6.12.0

Published 2024-02-06. Last modified 2026-06-17.