// Alert

Zoom threat report

// ZoomCRITICAL

Zoom disclosed CVE-2026-53412, a critical improper input validation vulnerability (CVSS 9.8) in its Windows desktop client, VDI client, and Meeting SDK that allows unauthenticated attackers to conduct account takeover via network access. Affected versions include Zoom Workplace for Windows before 7.0.0, VDI Client before versions 7.0.10/6.6.15/6.5.18, and Meeting SDK before 7.0.0. Zoom recommends immediate patching.

// Get alerts for Zoom