Critical Authentication Bypass Vulnerability in VMware Avi Load Balancer (CVE-2026-47865)
A critical authentication bypass vulnerability (CVE-2026-47865) has been discovered in VMware Avi Load Balancer, with a CVSS score of 9.8. The vulnerability allows a malicious user with network access to bypass the authentication mechanism and access the Avi Control plane. Affected versions include 31.1.1 through 31.2.2, 30.1.1 through 30.2.6, and 22.1.1 through 22.1.7. Immediate patching is recommended to prevent potential exploitation.