LIVE · cybersecurity feed
Live wire
cve recordhigh

CVE-2026-30905

zoom · workplace virtual desktop infrastructure

Published
CVSS7.8
Severityhigh
WeaknessCWE-73
ExploitedNot in CISA KEV

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

External Control of File Name or Path in the Zoom Workplace VDI Plugin Windows Universal Installer before version 6.6.11 may allow an authenticated user to conduct an escalation of privilege via local access.

References

← Back to the CVE Tracker

Our coverage of CVE-2026-30905

No stories yet. This page updates automatically when we publish reporting that references CVE-2026-30905.