VMware ESXi Insufficient Logging Admin actions not recorded
CVE-2026-41709 Published on July 30, 2026
ESX insufficient logging vulnerability
VMware ESX contains an insufficient logging vulnerability. A malicious administrator could exploit this issue to perform certain operations without them being logged.
Vulnerability Analysis
CVE-2026-41709 can be exploited with network access, and requires user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality, with no impact on integrity, and no impact on availability.
Weakness Type
Insufficient Logging
When a security-critical event occurs, the software either does not record the event or omits important details about the event when logging it. When security-critical events are not logged properly, such as a failed login attempt, this can make malicious behavior more difficult to detect and may hinder forensic analysis after an attack succeeds.
Products Associated with CVE-2026-41709
Want to know whenever a new CVE is published for VMware products? stack.watch will email you.
Affected Versions
VMware Cloud Foundation:- Version 9.1.x.x is affected.
- Version 9.0.x.x is affected.
- Version 5.x and below 5.2.4 is affected.
- Version 9.1.x.x is affected.
- Version 9.0.x.x is affected.
- Version 9.1.x.x and below ESXi-9.1.0.0-25370933 is affected.
- Version 9.0.x.x and below ESXi-9.0.2.0100-25595025 is affected.
- Version 8.0 and below ESXi80U3j-25429389 is affected.
- Version 5.1.x is affected.
- Version 5.0.x is affected.