CVE-2025-22215

Publication date

2025-01-08 06:43:32

Family

vmware

State

PUBLISHED

Description

VMware Aria Automation contains a server-side request forgery (SSRF) vulnerability. A malicious actor with "Organization Member" access to Aria Automation may exploit this vulnerability enumerate internal services running on the host/network.