WaterISAC Navigation
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
  • About
  • Report Incident
  • Contact Us
  • Become a Member
  • NRWA Signup
  • WaterISAC Champions
Home Posts (TLP:CLEAR) Urgent High Severity Vulnerability in VMWare Aria Operations for Logs
Become a Member

Log in

  • Upcoming Events
  • Resource Center
  • Tools
  • Webcasts
  • Contaminant Databases
  • Community Partnerships
  • About
  • Log in

  • My Account

  • Logout

  • Report Incident
  • Contact Us
  • NRWA Signup
  • WaterISAC Champions
More Resources

(TLP:CLEAR) Urgent High Severity Vulnerability in VMWare Aria Operations for Logs

TLP:CLEAR

Author: Chase Snow

Created: Thursday, January 30, 2025 - 14:02

Categories: Cybersecurity, Security Preparedness

Summary: Today, Broadcom released a security advisory for five vulnerabilities, the most severe being CVE-2025-22218 in VMWare Aria Operations, can result in an escalation of privileges to the admin user account via cross-site scripting. 

Analyst Note: This could allow a malicious actor with “view only admin permissions” and access to Aria Operations for Logs API to perform actions or operations in the context of an admin user. WaterISAC urges members to immediately update to the latest software version. No workarounds have been identified by Broadcom for this vulnerability.

Original Source: https://support.broadcom.com/web/ecx/support-content-notification/ /external/content/SecurityAdvisories/0/25329

Related WaterISAC PIRs: 8

Related Resources

Tip of the Week – May 14, 2026

May 14, 2026 in Cybersecurity, Security Preparedness
Members Only

(TLP:AMBER+STRICT) Situation Report: Heightened Threat Environment – Potential Retaliation by Iranian Threat Actors Following U.S. Strikes on Iran (Updated May 14, 2026)

May 14, 2026 in Cybersecurity, OT-ICS Security, Physical Security, Security Preparedness

(TLP:CLEAR) Non-Human Identities (NHIs) Are Growing Faster Than Most Security Programs

May 14, 2026 in Cybersecurity, Security Preparedness

Become a Member
FAQs
About
Report Incident

Terms & Conditions
Privacy Policy
AI Policy
Contact Us

LinkedIn

1250 I Street NW, Suite 350
Washington, DC 20005
1-866-H2O-ISAC (1-866-426-4722)
© 2026 WaterISAC. All Rights Reserved.

Toggle the Widgetbar