SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-53412

CRITICAL · CVSS 9.8 EPSS 0.65%

Source: NVD + CISA KEV + EPSS · Published 2026-07-16 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

A critical vulnerability in the Zoom Desktop Client, VDI Client, and Meeting SDK for Windows allows unauthenticated users to exploit improper input validation, potentially leading to account takeover through network access. Organizations using these Zoom products should prioritize immediate patching to mitigate the risk of unauthorized access and protect sensitive user data. This issue is particularly urgent for enterprises relying on Zoom for remote communication and collaboration.

CVE
CVE-2026-53412
Severity
CRITICAL
CVSS
9.8
EPSS
0.65%
Windows

Original NVD Description

Improper Input Validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an unauthenticated user to conduct an account takeover via network access.

Related CVEs

Other vulnerabilities affecting the same vendor(s)