CVE-2026-53415
- EPSS 0.39%
- Veröffentlicht 11.08.2026 15:59:21
- Zuletzt bearbeitet 13.08.2026 05:17:24
Use after Free in the annotator function of Zoom Clients may allow a meeting participant to achieve remote code execution of another participant via network access.
CVE-2026-53414
- EPSS 0.28%
- Veröffentlicht 11.08.2026 15:58:11
- Zuletzt bearbeitet 11.08.2026 17:18:03
Missing bounds check in the annotator function of Zoom Clients allows buffer over-read, which may allow a meeting participant to conduct a denial of service on another participant via network access.
CVE-2026-53413
- EPSS 0.41%
- Veröffentlicht 11.08.2026 15:55:38
- Zuletzt bearbeitet 12.08.2026 05:17:55
Missing bounds check in the annotator function of Zoom Clients allows buffer over-write, which may allow a meeting participant to achieve remote code execution of another participant via network access.
CVE-2025-62483
- EPSS 0.27%
- Veröffentlicht 13.11.2025 15:03:07
- Zuletzt bearbeitet 13.01.2026 20:50:10
Improper removal of sensitive information in certain Zoom Clients before version 6.5.10 may allow an unauthenticated user to conduct a disclosure of information via network access.
CVE-2025-64739
- EPSS 0.32%
- Veröffentlicht 13.11.2025 14:28:58
- Zuletzt bearbeitet 13.01.2026 20:46:49
External control of file name or path in certain Zoom Clients may allow an unauthenticated user to conduct a disclosure of information via network access.
CVE-2025-49457
- EPSS 0.6%
- Veröffentlicht 12.08.2025 22:54:20
- Zuletzt bearbeitet 08.09.2025 15:44:28
Untrusted search path in certain Zoom Clients for Windows may allow an unauthenticated user to conduct an escalation of privilege via network access
CVE-2025-49464
- EPSS 0.61%
- Veröffentlicht 10.07.2025 16:32:20
- Zuletzt bearbeitet 05.08.2025 13:50:34
Classic buffer overflow in certain Zoom Clients for Windows may allow an authorised user to conduct a denial of service via network access.
CVE-2025-49463
- EPSS 0.43%
- Veröffentlicht 10.07.2025 16:26:46
- Zuletzt bearbeitet 05.08.2025 13:52:01
Insufficient control flow management in certain Zoom Clients for iOS before version 6.4.5 may allow an unauthenticated user to conduct a disclosure of information via network access.
CVE-2025-49462
- EPSS 0.23%
- Veröffentlicht 10.07.2025 16:24:14
- Zuletzt bearbeitet 05.08.2025 14:00:08
Cross-site scripting in certain Zoom Clients before version 6.4.5 may allow an authenticated user to conduct a disclosure of information via network access.
CVE-2025-46789
- EPSS 0.48%
- Veröffentlicht 10.07.2025 15:50:54
- Zuletzt bearbeitet 22.08.2025 17:09:50
Classic buffer overflow in certain Zoom Clients for Windows may allow an authorized user to conduct a denial of service via network access.