You observe that security scanners (such as Tenable, Nessus, or Qualys) report the following vulnerabilities for the HCX 4.11.5 appliance:
CVE-2025-61984CVE-2026-35385CVE-2026-35386CVE-2026-35387CVE-2026-35388CVE-2026-35414These vulnerabilities are primarily related to OpenSSH versions used within the underlying Photon OS.
VMware HCX 4.11.5 or earlier
VMware By Broadcom is aware of the above mentioned CVE's.
Refer to the release notes for existing and forthcoming product releases for any updates in relation to this CVE.
Should you require further information contact Broadcom Support.