CISA flags VMware Aria Operations RCE flaw as exploited in attacks
2026-03-04T20:09:07Z•c287c61c26331ac8551ad89c414edf86d5a8cfef0463d614ac1e695117c5ca7f
CVE-2026-22719AWS outageAkzoNobelAndroid patchCISACyberStrikeAIFacebook outageLexisNexisMFA bypassOAuth abusePWAQualcomm zero-dayUH Cancer CenterVMware Ariacompromised cPanelcredential theftdata breachdrone strikesexploited vulnerabilityphishingransomwareremote code executionsecurity updates
What happened
Multiple high-impact incidents and active exploitation were reported: CISA added a VMware Aria Operations remote code execution vulnerability (CVE-2026-22719) to its Known Exploited Vulnerabilities catalog after observed attacks. Google pushed Android security updates fixing 129 issues including an actively exploited Qualcomm display zero-day. Major data breaches and ransomware incidents were disclosed (LexisNexis, AkzoNobel U.S. site, University of Hawaii Cancer Center affecting ~1.2M), and Cloud Imperium Games/Star Citizen reported a breach. Additional notable activity includes AWS data‑cent
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- c287c61c26331ac8551ad89c414edf86d5a8cfef0463d614ac1e695117c5ca7f
- Enrichment time
- 2026-03-04T20:09:07Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.