Zoom Product Security Update Advisory (CVE-2025-49457)

Zoom Product Security Update Advisory (CVE-2025-49457)

Overview

 

We have released security updates to fix vulnerabilities in Zoom products. We encourage affected product users to update to the latest version.
 

 

Affected Products

 

CVE-2025-49457

 

Zoom Workplace (Windows) Versions: 6.3.10 and earlier
Zoom Workplace VDI (Windows) Versions: 6.3.10 and earlier
Zoom Workplace VDI (Windows) Version: 6.2.0 and above but below 6.2.12
Zoom Workplace VDI (Windows) Version: 6.1.0 or later and less than 6.1.16
Zoom Rooms (Windows) Version: 6.3.10 and earlier
Zoom Rooms Controller (Windows) Version: 6.3.10 and earlier
Zoom Meeting SDK (Windows) Version: 6.3.10 and earlier

 

 

Resolved Vulnerabilities

 

Improper authorization validation vulnerability in the Zoom client (CVE-2025-49457)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest update. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

CVE-2025-49457

 

Zoom Workplace (Windows) Versions: Apply the latest update
Zoom Workplace VDI (Windows) Versions: Apply the Latest Update
Zoom Workplace VDI (Windows) Versions: Apply the Latest Update
Zoom Workplace VDI (Windows) Versions: Get the Latest Update
Zoom Rooms (Windows) version: Get the latest update
Zoom Rooms Controller (Windows) version: Get the latest update
Zoom Meeting SDK (Windows) version: Get the latest update

 

 

References

 

[1] Zoom Clients for Windows – Untrusted Search Path
https://www.zoom.com/en/trust/security-bulletin/zsb-25030/