// Alert

Zoom threat report

Zoom disclosed four vulnerabilities affecting Zoom Workplace, Zoom Rooms, Meeting SDK, Video SDK, and VDI products. CVE-2026-53413 and CVE-2026-53415 allow remote code execution via buffer overwrite and use-after-free in the annotator function; CVE-2026-53414 enables denial of service; CVE-2026-53416 permits information disclosure via path traversal in VDI Client. CVSS scores range from 6.5 to 8.3. Patches have been released across affected products.

// Get alerts for Zoom