CVE 7.8 HIGH

CVE-2026-30905_CVE-2026-30905

7.8 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

External Control of File Name or Path in the Zoom Workplace VDI Plugin Windows Universal Installer before version 6.6.11 may allow an authenticated user to conduct an escalation of privilege via local access.

Basic Information

ID CVE-2026-30905
Source Zoom
Published May 13, 2026 at 18:00
Modified May 13, 2026 at 18:55

Affected Product

Vendor Zoom Communications
Product Zoom Workplace VDI Plugin
Affected Versions Zoom Communications Zoom Workplace VDI Plugin 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.