Security Advisory

CVE-2025-22215

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-01-08 06:43:32
Last updated 2025-01-08 14:23:20
Assigner vmware
State PUBLISHED

Description

VMware Aria Automation contains a server-side request forgery (SSRF) vulnerability. A malicious actor with "Organization Member" access to Aria Automation may exploit this vulnerability enumerate internal services running on the host/network.