OpenSSH 8.9 Vulnerabilities in NSX Manager (CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, and CVE-2026-35414)
search cancel

OpenSSH 8.9 Vulnerabilities in NSX Manager (CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, and CVE-2026-35414)

book

Article ID: 440728

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

Security scanners report the following vulnerability on port 22 over TCP: Vulnerable SSH-2.0-OpenSSH_8.9 detected.
The scanners flag the following Common Vulnerabilities and Exposures (CVEs) associated with this package:

  • CVE-2026-35385
  • CVE-2026-35386
  • CVE-2026-35387
  • CVE-2026-35388
  • CVE-2026-35414

Environment

VMware NSX 4.2.3.x and earlier

Cause

Security scanners flag the OpenSSH 8.9 package for the mentioned CVEs.

Resolution

VMware by Broadcom is aware of CVE-2026-35385, CVE-2026-35386, CVE-2026-35387, CVE-2026-35388, and CVE-2026-35414.

Refer to the release notes for existing and forthcoming product releases for updates.

Should you require further information, contact Broadcom Support.