CVEs (83)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Zoom 3Meeting Software Development Kit Workplace DesktopWorkplace Virtual Desktop InfrastructureMay 14, 2026 Mar 11, 2026 N/A· v4 7.8 HIGH· v3 N/A· v2 Improper Check of minimum version in update functionality of certain Zoom Clients for Windows may allow an authenticated user to conduct an escalation of privilege via local access. |
1Zoom 2Meeting Software Development Kit WorkplaceNov 19, 2025 Nov 13, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Inefficient regular expression complexity in certain Zoom Workplace Clients before version 6.5.10 may allow an unauthenticated user to conduct an escalation of privilege via network access. |
1Zoom 2Meeting Software Development Kit WorkplaceJan 13, 2026 Nov 13, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Improper authorization handling in Zoom Workplace for Android before version 6.5.10 may allow an unauthenticated user to conduct an escalation of privilege via network access. |
1Zoom 5Meeting Software Development Kit RoomsRooms Controller+2 moreJan 13, 2026 Nov 13, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 External control of file name or path in certain Zoom Clients may allow an unauthenticated user to conduct a disclosure of information via network access. |
1Zoom 2Meeting Software Development Kit Workplace DesktopJan 13, 2026 Nov 13, 2025 N/A· v4 5.5 MEDIUM· v3 N/A· v2 External control of file name or path in Zoom Workplace for macOS before version 6.5.10 may allow an authenticated user to conduct a disclosure of information via local access. |
1Zoom 5Meeting Software Development Kit RoomsRooms Controller+2 moreJan 13, 2026 Nov 13, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Improper removal of sensitive information in certain Zoom Clients before version 6.5.10 may allow an unauthenticated user to conduct a disclosure of information via network access. |
1Zoom 2Meeting Software Development Kit Workplace DesktopJan 13, 2026 Nov 13, 2025 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Cross-site scripting in Zoom Workplace for Windows before version 6.5.10 may allow an unauthenticated user to impact integrity via network access. |
1Zoom 3Meeting Software Development Kit Workplace DesktopWorkplace Virtual Desktop InfrastructureJan 13, 2026 Nov 13, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Improper certificate validation in certain Zoom Clients may allow an unauthenticated user to conduct a disclosure of information via adjacent access. |
1Zoom 4Meeting Software Development Kit RoomsWorkplace Desktop+1 moreOct 21, 2025 Oct 15, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Command injection in some Zoom Clients for Windows may allow an authenticated user to conduct a disclosure of information via network access. |
1Zoom 5Meeting Software Development Kit RoomsRooms Controller+2 moreOct 6, 2025 Sep 9, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Improper action enforcement in certain Zoom Workplace Clients for Windows may allow an unauthenticated user to conduct a disclosure of information via network access. |
1Zoom 5Meeting Software Development Kit RoomsRooms Controller+2 moreOct 6, 2025 Sep 9, 2025 N/A· v4 4.3 MEDIUM· v3 N/A· v2 Incorrect authorization in certain Zoom Workplace Clients for Windows may allow an authenticated user to conduct an impact to integrity via network access. |
1Zoom 6Meeting Software Development Kit RoomsRooms Controller+3 moreOct 6, 2025 Sep 9, 2025 N/A· v4 7.4 HIGH· v3 N/A· v2 Cross-site scripting in certain Zoom Workplace Clients may allow an unauthenticated user to conduct a denial of service via network access. |
1Zoom 6Meeting Software Development Kit RoomsRooms Controller+3 moreOct 17, 2025 Sep 9, 2025 N/A· v4 7.5 HIGH· v3 N/A· v2 Uncontrolled resource consumption in certain Zoom Workplace Clients may allow an unauthenticated user to conduct a denial of service via network access. |
1Zoom 5Meeting Software Development Kit RoomsRooms Controller+2 moreOct 17, 2025 Sep 9, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Buffer overflow in certain Zoom Workplace Clients may allow an authenticated user to conduct a denial of service via network access. |
1Zoom 5Meeting Software Development Kit RoomsRooms Controller+2 moreSep 8, 2025 Aug 12, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access |
1Zoom 5Meeting Software Development Kit RoomsRooms Controller+2 moreSep 8, 2025 Aug 12, 2025 N/A· v4 5.1 MEDIUM· v3 N/A· v2 Race condition in the installer for certain Zoom Clients for Windows may allow an unauthenticated user to impact application integrity via local access. |
1Zoom 6Meeting Software Development Kit RoomsRooms Controller+3 moreNov 6, 2025 May 14, 2025 N/A· v4 6.1 MEDIUM· v3 N/A· v2 Cross-site scripting in some Zoom Workplace Apps may allow an authenticated user to impact app integrity via network access. |
1Zoom 5Meeting Software Development Kit RoomsRooms Controller+2 moreAug 19, 2025 May 14, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Buffer over-read in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access. |
1Zoom 6Meeting Software Development Kit RoomsRooms Controller+3 moreNov 4, 2025 May 14, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 Integer underflow in some Zoom Workplace Apps may allow an authenticated user to conduct a denial of service via network access. |
1Zoom 6Meeting Software Development Kit RoomsRooms Controller+3 moreNov 4, 2025 May 14, 2025 N/A· v4 6.5 MEDIUM· v3 N/A· v2 NULL pointer dereference in some Zoom Workplace Apps for Windows may allow an authenticated user to conduct a denial of service via network access. |