CVE-2025-22221

Publication date

2025-01-30 15:30:12

Family

vmware

State

PUBLISHED

Description

VMware Aria Operation for Logs contains a stored cross-site scripting vulnerability. A malicious actor with admin privileges to VMware Aria Operations for Logs may be able to inject a malicious script that could be executed in a victims browser when performing a delete action in the Agent Configuration.