CVE-2024-39818: Zoom Rooms

Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.

Protection mechanism failure for some Zoom Workplace Apps and SDKs may allow an authenticated user to conduct information disclosure via network access.

Affected products

  • Zoom Rooms: before 6.0.0 (fixed in 6.0.0)
  • Zoom Workplace: before 6.0.0 (fixed in 6.0.0)
  • Zoom Workplace Desktop: before 6.0.0 (fixed in 6.0.0)
  • Zoom Workplace Virtual Desktop Infrastructure: before 5.17.13 (fixed in 5.17.13)

Published 2024-08-14. Last modified 2026-06-17.