CVE Tools

Zoom warns of critical account takeover vulnerability

BleepingComputerBy Bill Toulas

PatchZoom Workplace for WindowsZoom VDI Client for Windows

Our summary

Zoom has issued security updates to fix a critical vulnerability that could allow unauthenticated attackers to take over user accounts. The flaw, tracked as CVE-2026-53412 with a severity score of 9.8, impacts several Windows-based products including older versions of Zoom Workplace, the VDI Client, and the Meeting SDK. Users are advised to update their software immediately to prevent potential exploitation. In addition to this high-profile issue, the latest patches also resolve three other high-severity flaws related to privilege escalation.

Read at BleepingComputer

BleepingComputer publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store