CVE-2026-22844: Zoom Communications Inc Zoom Node

Critical severity, CVSS 9.9. EPSS: 13.6% chance of exploitation in the next 30 days.

A Command Injection vulnerability in Zoom Node Multimedia Routers (MMRs) before version 5.2.1716.0 may allow a meeting participant to conduct remote code execution of the MMR via network access.

Affected products

Published 2026-01-20. Last modified 2026-06-17.