CVE-2025-49463: Zoom

Medium severity, CVSS 6.5. EPSS: 0.5% chance of exploitation in the next 30 days.

Insufficient control flow management in certain Zoom Clients for iOS before version 6.4.5 may allow an unauthenticated user to conduct a disclosure of information via network access.

Affected products

  • Zoom Zoom: before 6.4.5 (fixed in 6.4.5)

Published 2025-07-10. Last modified 2026-06-17.