logo

Zoom fixed critical Node Multimedia Routers flaw

ID: e20562f9-6433-5c42-88a4-191745a66e96

STIX ID: report--e20562f9-6433-5c42-88a4-191745a66e96

Feed Name: Security Affairs

Threat Score
75/100

Date Published: 2026-01-21

Date Updated: 2026-04-22

Author: Pierluigi Paganini

...
...

Zoom patched a critical command injection vulnerability (CVE-2026-22844, CVSS 9.9) in Zoom Node Multimedia Routers (MMRs) that could allow a meeting participant to perform remote code execution. The flaw affects Node Meeting Connector and Node Meetings Hybrid MMR modules prior to version 5.2.1716.0; Zoom released updates and reported no observed exploitation in the wild.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.