VMware Aria Operations contains an information disclosure vulnerability. A malicious user with non-administrative privileges may exploit this vulnerability to retrieve credentials for an outbound plugin if a valid service credential ID is known.
https://thehackernews.com/2025/01/broadcom-patches-vmware-aria-flaws.html
https://www.theregister.com/2025/01/30/vmware_infomration_disclosure_flaws/