Broadcom has urged VMware customers to patch three zero-day vulnerabilities that are actively being exploited by hackers.
The vulnerabilities, collectively known as "ESXicape," affect widely-used software hypervisor products - VMware ESXi, Workstation, and Fusion.
If successfully exploited, the vulnerabilities could allow attackers to escape their sandbox and gain unauthorized access to the hypervisor and subsequently compromise any other virtual machine on the same physical data center.
Urging customers to apply the patches immediately, Broadcom has released security patches for the vulnerabilities, which were discovered by Microsoft and have been actively targeted by ransomware groups in the past.