← Back to browse · API

CVE-2026-22844

Severity
CRITICAL
CVSS
9.9
EPSS
0.12965
Risk score
44.14
CISA KEV
No
PoC
No
Published
2026-01-20
Modified
2026-01-20
First seen
2026-08-07
Aliases
EUVD-2026-3437, GHSA-35QP-VX95-WWWF
Products
Zoom Communications Inc.:Zoom Node 0 <5.2.1716.0
Sources
euvd EUVD-2026-3437

Description

A Command Injection vulnerability in Zoom Node Multimedia Routers (MMRs) before version 5.2.1716.0 may allow a meeting participant to conduct remote code execution of the MMR via network access.

References