CVE-2025-22247
Medium severity, CVSS 6.1. EPSS: 0.3% chance of exploitation in the next 30 days.
VMware Tools contains an insecure file handling vulnerability. A malicious actor with non-administrative privileges on a guest VM may tamper the local files to trigger insecure file operations within that VM.
Published 2025-05-12. Last modified 2026-06-17.