Broadcom released fixes for three actively exploited VMware zero-day vulnerabilities affecting ESXi, Workstation, and Fusion, warning that the bugs can be chained to achieve a full virtual machine escape from a guest system to the hypervisor. The flaws, tracked as CVE-2025-22224, CVE-2025-22225, and CVE-2025-22226, include a critical issue and can enable code execution, sandbox escape, and access to sensitive memory when an attacker already has administrative privileges inside a guest VM. Microsoft Threat Intelligence Center reported the in-the-wild exploitation, and security researchers described the campaign as ESXicape.
Affected products include unpatched VMware ESXi 7.0 and 8.0, VMware Workstation 17.x before 17.6.3, and VMware Fusion 13.x before 13.6.3. Organizations running VMware Cloud Foundation environments may need to account for Broadcom’s product-specific patching requirements and compatibility constraints when deploying updates, including cases where some component updates are handled through the in-product Flexible BOM rather than the Async Patch Tool. Defenders are being urged to apply the relevant ESXi patches immediately and upgrade desktop hypervisor products to the fixed releases to block guest-to-host compromise.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
2 events from the most recent confirmed update back to the earliest known activity.
Broadcom released security updates for VMware ESXi, Workstation, and Fusion to fix the actively exploited vulnerabilities CVE-2025-22224, CVE-2025-22225, and CVE-2025-22226. The fixes include ESXi patches and upgrades to Workstation 17.6.3 and Fusion 13.6.3.
Microsoft Threat Intelligence Center reported active exploitation of three VMware vulnerabilities, CVE-2025-22224, CVE-2025-22225, and CVE-2025-22226. The flaws could be chained from a guest VM with administrative privileges to achieve a full VM escape.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
3 references tracked. Mallory keeps watching after this page renders.
csirt.sk
Open sourcedoublepulsar.com
Open sourceknowledge.broadcom.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.