← All CVEs

CVE-2026-22844

critical · 9.9

A Command Injection vulnerability in Zoom Node Multimedia Routers (MMRs) before version 5.2.1716.0 may allow a meeting participant to conduct remote code execution of the MMR via network access.

9.9
CVSS
13.6%
EPSS (exploit prob.)
96th
EPSS percentile
2026-01-20
Published

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

Weaknesses

CWE-78

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2026-22844