← Back

CVE-2026-47871

nvd nist
Published: Jul 18, 2026Modified: Aug 20, 2026

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: security@vmware.com (Secondary)

Description

VMware Avi Load Balancer contains a directory traversal vulnerability. Flaws in file path validation allow malicious, authenticated network users to perform directory traversal attacks. Affected versions: 32.1.1 (fixed in 32.1.2) 31.1.1 through 31.2.2 (fixed in 31.2.2-2p3) 30.1.1 through 30.2.6 (fixed in 30.2.7) 22.1.1 through 22.1.7 (fixed in 30.2.7)

Affected (7)

1 product
Vmware Avi Load Balancer
Configuration A
7 vulnerable
Vulnerable SoftwareAffected Versions
Broadcom
From 22.1.1 to 22.1.7
From 30.1.1 to 30.2.7
From 31.1.1 to 31.2.2
Version 31.2.2
Version 31.2.2 2p1
Version 31.2.2 2p2
Version 32.1.1

Timeline

No history available yet.