logo

Critical Zoom Vulnerability Enables Remote Code Execution via Command Injection

ID: fd17394b-e7ea-5abd-ac96-ffb0c55657d7

STIX ID: report--fd17394b-e7ea-5abd-ac96-ffb0c55657d7

Feed Name: GBHackers

Threat Score
78/100

Date Published: 2026-01-21

Date Updated: 2026-04-22

Author: Divya

...
...

**Critical Zoom Node MMR command injection (CVE-2026-22844)** — A command injection flaw in Zoom Node Meetings Hybrid and Meeting Connector MMR modules (versions prior to 5.2.1716.0) allows authenticated meeting participants to achieve remote code execution over the network; the issue is rated CVSS 9.9 and Zoom advises immediate update to MMR module version 5.2.1716.0 or later to mitigate risks to confidentiality, integrity, and availability.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.