CVE-2023-39203: Zoom Virtual Desktop Infrastructure
High severity, CVSS 7.5. EPSS: 0.9% chance of exploitation in the next 30 days.
Uncontrolled resource consumption in Zoom Team Chat for Zoom Desktop Client for Windows and Zoom VDI Client may allow an unauthenticated user to conduct a disclosure of information via network access.
Affected products
- Zoom Virtual Desktop Infrastructure: before 5.14.13 (fixed in 5.14.13); from 5.15.0, before 5.15.11 (fixed in 5.15.11)
- Zoom Zoom: before 5.16.0 (fixed in 5.16.0)
Published 2023-11-14. Last modified 2026-06-17.