CVE-2024-27242: Zoom

Medium severity, CVSS 6.8. EPSS: 0.5% chance of exploitation in the next 30 days.

Cross site scripting in Zoom Desktop Client for Linux before version 5.17.10 may allow an authenticated user to conduct a denial of service via network access.

Affected products

  • Zoom Zoom: before 5.7.10 (fixed in 5.7.10)

Published 2024-04-09. Last modified 2026-06-17.