In case you missed, there’s an hole on cheese and multiple vuln are used to bang ransomware into vCenter. Actually not updated VMware vCenter servers are vulnerable to arbitrary file upload leading to remote code execution:
For more official info:
https://www.vmware.com/security/advisories/VMSA-2021-0020.html