CVE-2024-22256: VMware Cloud Director

Medium severity, CVSS 4.3. EPSS: 0.4% chance of exploitation in the next 30 days.

VMware Cloud Director contains a partial information disclosure vulnerability. A malicious actor can potentially gather information about organization names based on the behavior of the instance.

Affected products

  • VMware Cloud Director: from 10.4.0, before 10.5.1.1 (fixed in 10.5.1.1)

Published 2024-03-07. Last modified 2026-06-17.