Known Vulnerabilities for Rooms by Zoom
Listed below are 10 of the newest known vulnerabilities associated with "Rooms" by "Zoom".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-44110 json | OpenClaw before 2026.4.15 contains an authorization bypass vulnerability in Matrix room control-command authorization that tr... | Not Provided | 2026-05-06 | 2026-05-07 |
| CVE-2026-36941 json | Sourcecodester Online Resort Management System v1.0 is vulnerable to SQL Injection in the file /orms/admin/rooms/manage_room.... | Not Provided | 2026-04-13 | 2026-04-13 |
| CVE-2026-36938 json | Sourcecodester Online Resort Management System v1.0 is vulnerable to SQL injection in /orms/admin/rooms/view_room.php. | Not Provided | 2026-04-13 | 2026-04-13 |
| CVE-2026-35624 json | OpenClaw before 2026.3.22 contains a policy confusion vulnerability in room authorization that matches colliding room names i... | Not Provided | 2026-04-09 | 2026-04-10 |
| CVE-2026-30906 json | Untrusted search path in the installer for Zoom Rooms for Windows before version 7.0.0 may allow an authenticated user to ena... | Not Provided | 2026-05-13 | 2026-05-13 |
| CVE-2024-4314 json | The Hostel plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.1.5.3. Th... | Not Provided | 2024-05-14 | 2026-04-08 |
| CVE-2024-3605 json | The WP Hotel Booking plugin for WordPress is vulnerable to SQL Injection via the 'room_type' parameter of the /wphb/v1/rooms/... | Not Provided | 2024-06-20 | 2026-04-08 |
| CVE-2023-43591 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 7.8 - HIGH | 2023-11-15 | 2023-11-21 |
| CVE-2023-43582 json | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new secur... | 8.8 - HIGH | 2023-11-15 | 2023-11-21 |
| CVE-2023-39218 json | Client-side enforcement of server-side security in Zoom clients before 5.14.10 may allow a privileged user to enable informat... | 4.9 - MEDIUM | 2023-08-08 | 2023-08-11 |