logo

Zoom Urges Windows Users to Update After Severe CVE-2025-49457 Security Flaw

ID: b7f567a9-1415-5765-a37e-a21da07a1b33

STIX ID: report--b7f567a9-1415-5765-a37e-a21da07a1b33

Feed Name: The Cyber Express

Threat Score
75/100

Date Published: 2025-08-14

Date Updated: 2026-04-23

Author: Ashish Khaitan

...
...

A critical untrusted-search-path vulnerability (CVE-2025-49457, CVSS 9.6) was disclosed in multiple Zoom Windows clients (Workplace, Rooms, Rooms Controller, Meeting SDK) — affecting versions before 6.3.10 and enabling unauthenticated privilege escalation; Zoom has released version 6.3.10 to address the issue and users are advised to update immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.