Zoom warns of critical account takeover vulnerability
PatchZoom Workplace for WindowsZoom VDI Client for WindowsOur summary
Zoom has issued security updates to fix a critical vulnerability that could allow unauthenticated attackers to take over user accounts. The flaw, tracked as CVE-2026-53412 with a severity score of 9.8, impacts several Windows-based products including older versions of Zoom Workplace, the VDI Client, and the Meeting SDK. Users are advised to update their software immediately to prevent potential exploitation. In addition to this high-profile issue, the latest patches also resolve three other high-severity flaws related to privilege escalation.
BleepingComputer publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.