Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
Zoom Video Conferencing: Unsecured Access Levels Can Be Exploited
CVE-2026-39653
Summary
A security issue in Zoom's video conferencing software allows hackers to access unauthorized parts of the system if the access control settings are not properly set up. This could potentially allow an attacker to access sensitive information or take control of user accounts. To stay secure, ensure that you have correctly configured access control settings in your Zoom account.
Original title
Missing Authorization vulnerability in Deepen Bajracharya Video Conferencing with Zoom video-conferencing-with-zoom-api allows Exploiting Incorrectly Configured Access Control Security Levels.This ...
Original description
Missing Authorization vulnerability in Deepen Bajracharya Video Conferencing with Zoom video-conferencing-with-zoom-api allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Video Conferencing with Zoom: from n/a through <= 4.6.6.
Vulnerability type
CWE-862
Missing Authorization
Published: 8 Apr 2026 · Updated: 9 Apr 2026 · First seen: 8 Apr 2026