CVE-2026-53408 is a HIGH severity vulnerability with a CVSS score of 8.1. The vulnerability exists in Zoom Workplace before version 7.0.4 for Android and before 7.0.3 for iOS. An unauthenticated user may conduct an escalation of privilege via network access due to improper authorization in the handler for custom URL schemes.
CVE-2026-53407 is a HIGH-severity vulnerability (CVSS Score: 8.1) affecting Zoom Workplace. The vulnerability is caused by improper authorization in the handler for custom URL schemes in Zoom Workplace before version 7.0.4 for Android and before 7.0.3 for iOS. This vulnerability may allow an unauthenticated user to conduct an escalation of privilege via network access.
CVE-2026-53406 is a high-severity vulnerability (CVSS Score: 7.8) affecting Zoom Contact Center for Windows before version 7.0.0. The vulnerability is caused by insufficient verification of data authenticity in the remote control feature, which may allow an authenticated user to enable an escalation of privilege via local access.