Older builds (prior to 16.2.4) have known security vulnerabilities like CVE-2022-22983 regarding credential storage.
Improved security by running the graphics engine in a separate, restricted process.
Widely regarded as one of the most stable hypervisors for professional use.