PatchSiren

Omnissa CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Omnissa CVE published 2026-07-08

CVE-2026-22927

CVE-2026-22927 is a Local Privilege Escalation Vulnerability in Omnissa Workspace ONE. This vulnerability could allow an attacker to escalate privileges on the affected system, potentially leading to unauthorized data access or system modifications. Users of Omnissa Workspace ONE should review the official advisory for specific details on affected versions and mitigation strategies. The CVE record was pub [truncated]

Known exploited Omnissa CVE published 2026-03-09

CVE-2021-22054

CVE-2021-22054 is a server-side request forgery (SSRF) issue associated with Omnissa Workspace ONE UEM. In the supplied corpus, CISA added it to the Known Exploited Vulnerabilities catalog on 2026-03-09 and set a remediation due date of 2026-03-23. Because CISA classifies it as a KEV item, defenders should treat it as time-sensitive and follow the vendor and CISA remediation guidance provided in the source record.