CRITICAL
Zoom Patches Critical Windows Flaw Enabling Account Takeover (CVE-2026-53412)
Zoom has released security updates for a critical vulnerability, tracked as CVE-2026-53412 (CVSS 9.8), affecting the Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows. The flaw is rooted in improper input validation and could allow an attacker to achieve account takeover. Zoom is urging all Windows users of the affected clients and SDK to update to the patched version immediately. No details on active exploitation have been reported.