Security2 distinct publishers2 min readPublished
Broadcom's VMSA-2026-0007 fixes an integer overflow in the VMXNET3 adapter and a stack overflow in HGFS, both reachable by a local administrator inside the VM, and the only remedy on offer is version 26H1u1.
The Watch · Security desk

Compiled by The WatchSomething wrong?How this is made
Both bugs live in code the host exposes to the guest on purpose. VMXNET3 is VMware's own virtual network adapter for virtual machines [3]. HGFS is the feature that lets a guest read files and directories sitting on the physical host [5]. Parsing input that originates inside the VM is their job.
The scores invert the reach. CVE-2026-59346 carries a 9.3 but requires the VM to be configured with a VMXNET3 adapter [2]. CVE-2026-59347 carries an 8.1 and, per Broadcom's wording, needs nothing beyond local administrative privileges on the virtual machine [4]. That is a 1.2-point gap on the scale in favour of the bug with the narrower configuration precondition [2]. Neither requires any foothold on the host itself [1].
On a malware analysis workstation or a developer sandbox, code running as administrator inside the guest is the expected starting state rather than a hurdle an attacker still has to clear. In that setup, the bug is what separates the sample from the host [3]. The sources do not say how many such installations exist, and neither advisory writeup quantifies use cases.
The fix is single-track. Both 25H2 and 26H1 are affected, and both are resolved only in 26H1u1 [7], so a 25H2 install does not receive a patch in place; it receives a version move [4]. That applies to Workstation on Windows and Linux and to Fusion on macOS [6]. Broadcom offers no workaround for either flaw and recommends updating as soon as possible [8].
What is public: the advisory, the CVSS scores, and the credits. h4urek with secsys lab and Y² reported the VMXNET3 overflow, as did Stan S working with the TrendAI Zero Day Initiative, independently of one another [11]. Yeonghyeon Choi and Tianchu Chen of Tencent Xuanwu Lab reported the HGFS overflow [12]. Both reports converge on the same virtual NIC, and that convergence, from two separate research lines working independently, is what suggests a reachable bug class rather than a single lucky crash.
What is not public: any exploitation. Broadcom makes no mention of either issue being used in the wild and says both were reported privately, according to SecurityWeek, which dates the announcement to Thursday [9][13]. Set against that, SecurityWeek also counts more than two dozen VMware vulnerabilities currently on CISA's Known Exploited Vulnerabilities list [10]. Privately reported VMware flaws have a track record of reappearing as tooling, and the absence of a configuration change to fall back on means the only variable here is how quickly 26H1u1 gets deployed.
Ranked by verification strength, evidence, and original report placement.
Broadcom published advisory VMSA-2026-0007, patching two vulnerabilities in VMware Workstation and Fusion that allow an attacker inside a virtual machine to execute code on the underlying host; one is rated Critical, and neither has a workaround.
CVE-2026-59346 (CVSS 9.3) is an integer-overflow vulnerability in VMXNET3; a malicious actor with local administrative privileges on a virtual machine with a VMXNET3 virtual network adapter may exploit it to execute code on the host.
VMXNET3 is a virtual network adapter (virtual NIC) designed by VMware for virtual machines.
CVE-2026-59347 (CVSS 8.1) is a stack-based buffer overflow in the HGFS component; a malicious actor with local administrative privileges on a virtual machine may exploit it to execute code as the virtual machine's VMX process running on the host.
Host-Guest File System (HGFS) is a VMware feature that lets a virtual machine access files and directories located on the physical host.
Both vulnerabilities affect VMware Workstation and VMware Fusion versions 25H2 and 26H1, and were fixed in version 26H1u1.
Distinct publishers with included, body-backed reporting in this cluster.
1 article · September 4, 2026
1 article · September 4, 2026
Follow any of these and your For You feed starts watching them — no settings page required.
security
Johnson Controls console holds passwords in cleartext memory, and the fix line names two versions1 distinct publisher
build
A researcher is timing zero-days to Patch Tuesday, and the monthly cadence has no reply1 distinct publisher
security
Google patches a V8 type confusion already being exploited against Chrome users8 distinct publishers
security
Community maps in MECCHA CHAMELEON could write files anywhere on a player's disk1 distinct publisher
Evidence-backed comparisons of source perspectives and observed adoption signals. Read the methodology
Which Builder, Operator, and Investor concerns the observed source mix emphasized—not a truth score.
Evidence, demonstrated adoption, hype gap, incentives, and confidence are assessed independently, each on its own current evidence. How these are measured.
One advisory, quoted twice
Every technical particular here traces to VMSA-2026-0007, and both SecurityWeek and SecurityAffairs quote it rather than test it. Broadcom is the authority on its own code, the two entries carry distinct components and distinct preconditions, and the credits to Tencent Xuanwu Lab and the TrendAI Zero Day Initiative give the findings named provenance. Nobody outside Broadcom has taken an independent look at reachability or at the severity numbers themselves.
Fixed build exists, uptake unknown
The measurable part is that a patched version is named and shipped. Beyond that the field is dark: nobody has published install counts or telemetry, and there are no reported attacks, plus a fix that 25H2 users can only reach by moving onto the 26H1 line, which is the step most likely to stall in change control.
Advisory-tight, with a KEV nudge
The reporting mostly stays inside Broadcom's own wording, and the wording is already stark: an attacker with guest admin gets code execution on the host, and there is no workaround to stop it. The stretch is SecurityWeek's pivot from two privately reported bugs to the two dozen-plus VMware entries in CISA's catalogue, which invites readers to price exploitation that Broadcom does not report. Our own framing leans on the guest-admin precondition being cheap in practice, a point the sources describe but never quantify.
Vendor grades its own flaw
Broadcom wrote the advisory, chose the CVSS numbers and sells the build that fixes them. The reporters have standing interests too: findings brokered through the Zero Day Initiative and published by Tencent Xuanwu Lab earn more credit as Critical guest-to-host escapes than as configuration quirks. None of that makes the bugs less real, but nobody outside Broadcom has checked the 9.3 or the 8.1 in this reporting.
Narrow facts, firm ground
Both publishers agree because both are reading the same document, so consistency here is not independent confirmation. The identifiers, components, preconditions and fixed build are stable and unlikely to move; everything about exposure, exploitability and installed base is missing, and confidence tracks that split rather than averaging over it.