Vulnerability Overview
Exploitation Activity
Exploitation Intelligence
A critical command injection vulnerability in Zoom's Node Multimedia Routers (MMRs), tracked as CVE-2026-22844, has been disclosed. This flaw could permit meeting participants to execute arbitrary code on affected systems, posing a significant risk to organizations using Zoom's services. Immediate p...
Zoom has patched a critical vulnerability (CVE-2026-53412) in its Windows desktop client and VDI software that could allow unauthenticated attackers to take over user accounts via network access. The flaw, rated 9.8 out of 10 on the CVSS scale, stems from improper input validation and affects multip...
Zoom has addressed a critical vulnerability, CVE-2026-22844, affecting its Node servers, specifically the Multimedia Routers (MMRs) component. This command injection flaw allows attackers to execute arbitrary code through network access, posing significant risks to organizations using Zoom for meeti...