The National Information Technology Development Agency (NITDA) has warned Zoom users about a critical vulnerability that could allow attackers to remotely compromise user accounts without valid credentials.
The warning was issued on Monday by the NITDA Computer Emergency Readiness and Response Team (NITDA-CERRT) in an advisory on the vulnerability tracked as CVE-2026-53412.
NITDA-CERRT advised users to update affected Zoom applications immediately and implement additional security measures, including multi-factor authentication (MFA).
According to the agency, the vulnerability is caused by improper input validation and can be exploited remotely over a network without requiring authentication.
“The vulnerability is caused by improper input validation and could allow an unauthenticated attacker to remotely compromise Zoom user accounts over a network without requiring valid credentials,” NITDA-CERRT said.
The agency warned that successful exploitation could give attackers unauthorised access to confidential meetings, chat conversations, recordings and shared files.
“If exploited, attackers could take over Zoom user accounts without authorization, access confidential meetings, chat conversations, recordings and shared files,” the advisory said.
NITDA-CERRT said the vulnerability affects Zoom Workplace for Windows and the Zoom Workplace VDI Client for Windows.
The agency warned that compromised accounts could expose sensitive organisational, government and personal information. Attackers could also impersonate legitimate users to conduct phishing, fraud and social engineering attacks.
NITDA-CERRT advised users of Zoom Workplace for Windows to upgrade to version 7.0.0 or later.
Users of Zoom Workplace VDI Client for Windows were advised to upgrade to version 7.0.10, 6.6.15, 6.5.18 or later, depending on their supported release branch.
The agency also urged organisations to verify that all Zoom desktop clients are running supported versions and maintain effective patch management processes to ensure security updates are deployed promptly.
NITDA-CERRT recommended enabling MFA across Zoom accounts and restricting administrative privileges in accordance with the principle of least privilege.
Users were further advised to monitor account activity and authentication logs for suspicious login attempts or other unauthorised activity.
The agency also urged organisations to educate employees on how to identify and report suspicious account activity as part of broader efforts to reduce the risk of account compromise.















