Vulnerability intelligence
CVE-2026-53412
Improper Input Validation in Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows may allow an unauthenticated user to conduct an account takeover via network access.
CVSS Score
—
Critical
EPSS — Exploit Probability
0.6%
Riskier than 48% of all CVEs
Exploitation
Not in CISA KEV
No federal exploitation record
Remediation
unknown
Check vendor advisories
2 articles across 2 outlets · first covered Jul 16, 2026 · latest Jul 16, 2026
Tracked incidents
Coverage timeline
-
Splunk and Zoom patch critical flaws, including CVE-2026-53412www.securityweek.com · Jul 16, 2026
-
Zoom patches critical Windows account takeover flaw CVE-2026-53412securityaffairs.com · Jul 16, 2026