Known vulnerabilities in VMware Tanzu velero

Vendor: Broadcom
Software CPE: cpe:2.3:a:broadcom:vmware_tanzu_velero:*:*:*:*:*:*:*:*
Total vulnerabilities: 2
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 7.2

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting VMware Tanzu velero VMware Tanzu velero is affected by 2 known vulnerabilities: 2 low Critical High Medium Low

Vulnerabilities (2)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU144569 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2026-32637
CWE-22 Low
No
No
1.18.1 21.08.2026 SB2026082168
#VU98765 - Exposure of sensitive information to an unauthorized actor
CVE-2020-3996
CWE-200 Low
No
No
1.4.3, 1.5.2 17.10.2024 SB2020110653