CISA flags VMware Aria Operations RCE flaw as exploited in attacks

2026-03-04T20:09:07Zc287c61c26331ac8551ad89c414edf86d5a8cfef0463d614ac1e695117c5ca7f
CVE-2026-22719AWS outageAkzoNobelAndroid patchCISACyberStrikeAIFacebook outageLexisNexisMFA bypassOAuth abusePWAQualcomm zero-dayUH Cancer CenterVMware Ariacompromised cPanelcredential theftdata breachdrone strikesexploited vulnerabilityphishingransomwareremote code executionsecurity updates

What happened

Multiple high-impact incidents and active exploitation were reported: CISA added a VMware Aria Operations remote code execution vulnerability (CVE-2026-22719) to its Known Exploited Vulnerabilities catalog after observed attacks. Google pushed Android security updates fixing 129 issues including an actively exploited Qualcomm display zero-day. Major data breaches and ransomware incidents were disclosed (LexisNexis, AkzoNobel U.S. site, University of Hawaii Cancer Center affecting ~1.2M), and Cloud Imperium Games/Star Citizen reported a breach. Additional notable activity includes AWS data‑cent

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
c287c61c26331ac8551ad89c414edf86d5a8cfef0463d614ac1e695117c5ca7f
Enrichment time
2026-03-04T20:09:07Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · CISA flags VMware Aria Operations RCE flaw as exploited in attacks · Baitaphish