CRITICAL: VMware vCenter CVE-2026-59310 Exploited in the Wild for RCE
Broadcom patched a CVSS 9.8 directory traversal flaw in the vCenter Syslog server on July 29, and attackers were exploiting it five days later. Researchers have tracked 361 victim IPs across 47 countries, with the attack chain planting cron jobs that run reverse_ssh for persistent access that survives patching.