VendorsZoomroomsany version
Vulnerabilities

Zoom Rooms any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

108CVEs
CVE-2026-30902
Zoom Clients for Windows - Improper Privilege Management
Published 2026-03-11 · Analyzed
7.8EPSS 0.001
CVE-2023-36537
Improper privilege management in Zoom Rooms for Windows before version 5.14.5 may allow an authenticated user to enable an escalation of privilege via local access.
Published 2023-07-11 · Modified
7.8EPSS 0.001
CVE-2022-36925
Insecure key generation for Zoom Rooms for macOS Clients
Published 2023-01-09 · Modified
7.8EPSS 0.001
CVE-2023-36532
Buffer overflow in Zoom Clients before 5.14.5 may allow an unauthenticated user to enable a denial of service via network access.
Published 2023-08-08 · Modified
7.5EPSS 0.015
CVE-2023-39206
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
Published 2023-11-14 · Modified
7.5EPSS 0.011
CVE-2023-39204
Buffer overflow in some Zoom clients may allow an unauthenticated user to conduct a denial of service via network access.
Published 2023-11-14 · Modified
7.5EPSS 0.011
CVE-2023-22880
Information Disclosure in Zoom for Windows Clients
Published 2023-03-16 · Modified
7.5EPSS 0.010
CVE-2024-39818
Zoom Workplace Apps and SDKs - Protection Mechanism Failure
Published 2024-08-14 · Analyzed
7.5EPSS 0.006
CVE-2024-45422
Zoom Apps - Improper Input Validation
Published 2024-11-19 · Analyzed
7.5EPSS 0.006
CVE-2024-27241
Zoom Apps and SDKs - Improper Input Validation
Published 2024-07-15 · Analyzed
7.5EPSS 0.004
CVE-2024-45424
Zoom Workplace Apps - Business Logic Error
Published 2025-02-25 · Analyzed
7.5EPSS 0.004
CVE-2025-64739
Zoom Clients - External Control of File Name or Path
Published 2025-11-13 · Analyzed
7.5EPSS 0.003
CVE-2025-58133
Zoom Rooms Clients - Authentication Bypass
Published 2025-10-15 · Analyzed
7.5EPSS 0.003
CVE-2025-49460
Zoom Workplace Clients - Argument Injection
Published 2025-09-09 · Analyzed
7.5EPSS 0.003
CVE-2025-62483
Zoom Clients - Improper Removal of Sensitive Information
Published 2025-11-13 · Analyzed
7.5EPSS 0.003
CVE-2025-0149
Zoom Apps - Insufficient Verification of Data Authenticity
Published 2025-03-11 · Analyzed
7.5EPSS 0.002
CVE-2025-49461
Zoom Workplace Clients - Cross-site Scripting
Published 2025-09-09 · Analyzed
7.4EPSS 0.003
CVE-2022-28766
DLL injection in Zoom Windows Clients
Published 2022-11-17 · Modified
7.3EPSS 0.005
CVE-2024-39819
Zoom Workplace Apps and SDK for Windows - Improper Privilege Management
Published 2024-07-15 · Modified
7.3EPSS 0.001
CVE-2024-24693
Zoom Rooms Client for Windows - Improper Access Control
Published 2024-03-13 · Modified
7.2EPSS 0.002
CVE-2023-36535
Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow an authenticated user to enable information disclosure via network access.
Published 2023-08-08 · Modified
7.1EPSS 0.012
CVE-2024-27238
Zoom Apps and SDKs - Race Condition
Published 2024-07-15 · Analyzed
7.1EPSS 0.001
CVE-2026-53410
Zoom Clients for Windows - Race Condition
Published 2026-07-16 · Analyzed
7.0EPSS 0.001
CVE-2024-42441
Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS, Zoom Rooms Client for macOS - Incorrect Privilege Assignment
Published 2024-08-14 · Modified
6.7EPSS 0.002
CVE-2024-42440
Zoom Workplace Desktop App for macOS, Zoom Meeting SDK for macOS, Zoom Rooms Client for macOS - Improper Privilege Management
Published 2024-08-14 · Analyzed
6.7EPSS 0.002
CVE-2024-39821
Zoom Workplace App for Windows and Zoom Rooms App for Windows - Race Condition
Published 2024-07-15 · Analyzed
6.6EPSS 0.001
CVE-2025-58132
Zoom Clients for Windows - Command Injection
Published 2025-10-15 · Analyzed
6.5EPSS 0.018
CVE-2024-24699
Zoom Clients - Business Logic Error
Published 2024-02-13 · Modified
6.5EPSS 0.017
CVE-2024-27239
Zoom Workplace Apps and SDKs - Divide By Zero
Published 2025-02-25 · Modified
6.5EPSS 0.006
CVE-2024-27246
Zoom Workplace Apps and SDKs - Use After Free
Published 2025-02-25 · Analyzed
6.5EPSS 0.006
CVE-2024-27245
Zoom Workplace Apps and SDKs - Buffer Overflow
Published 2025-02-25 · Analyzed
6.5EPSS 0.006
CVE-2023-39199
Cryptographic issues with In-Meeting Chat for some Zoom clients may allow a privileged user to conduct an information disclosure via network access.
Published 2023-11-14 · Modified
6.5EPSS 0.006
CVE-2025-46785
Zoom Workplace Apps for Windows - Buffer Over-read
Published 2025-05-14 · Analyzed
6.5EPSS 0.006
CVE-2024-42436
Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers - Buffer Overflow
Published 2024-08-14 · Analyzed
6.5EPSS 0.006
CVE-2024-42437
Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers - Buffer Overflow
Published 2024-08-14 · Analyzed
6.5EPSS 0.006
CVE-2024-42438
Zoom Workplace Apps, SDKs, Rooms Clients, and Rooms Controllers - Buffer Overflow
Published 2024-08-14 · Analyzed
6.5EPSS 0.006
CVE-2024-24690
Zoom Clients - Improper Input Validation
Published 2024-02-14 · Modified
6.5EPSS 0.006
CVE-2025-30667
Zoom Workplace Apps - NULL Pointer Dereference
Published 2025-05-14 · Analyzed
6.5EPSS 0.005
CVE-2025-30668
Zoom Workplace Apps - NULL Pointer Dereference
Published 2025-05-14 · Analyzed
6.5EPSS 0.005
CVE-2025-30665
Zoom Workplace Apps for Windows - NULL Pointer Dereference
Published 2025-05-14 · Analyzed
6.5EPSS 0.005
← Prev2 / 3Next →