This article clarifies the impact of CVE-2026-55200 on Operations Manager. Security assessments confirm that the product is not affected by this vulnerability.
Product: Tanzu Operations Manager
Versions: 3.x
CVE-2026-55200 specifically affects the libssh2 library (versions 1.11.1 and earlier) due to a buffer overflow in the ssh2_transport_read() function. Tanzu Operations Manager is not affected because the product utilizes the libssh-4 library rather than the vulnerable libssh2 component.
Tanzu Operations Manager is safe from CVE-2026-55200, since it uses libssh-4, which does not contain the vulnerable code path found in libssh2.
For general security updates and to monitor future vulnerability assessments, please refer to the .