<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>0dayNews — Zoom</title><description>Vulnerabilities across the Zoom stack: Workplace (formerly Zoom Client), Windows and macOS VDI Clients, Meeting SDK, Rooms, and the browser plug-ins. Zoom Product Security (PSIRT) advisories, in-the-wild reports, and the desktop-client bugs that turn every enterprise&apos;s collaboration surface into an attack surface. Combined article + CVE feed for the Zoom beat.</description><link>https://0daynews.com/</link><language>en-us</language><item><title>Zero-Click RCE in Zoom Annotation — Patch Now</title><link>https://0daynews.com/articles/2026-08-11-zoom-annotation-zero-click-rce/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-08-11-zoom-annotation-zero-click-rce/</guid><description>A flaw in Zoom&apos;s annotation tool let any meeting participant execute code on another attendee&apos;s machine — zero clicks required. Update Zoom clients now.</description><pubDate>Tue, 11 Aug 2026 22:00:00 GMT</pubDate><category>Zoom</category><category>article</category></item><item><title>Zoom PSIRT: patch Workplace 7.0.0, unauth takeover 9.8</title><link>https://0daynews.com/articles/2026-07-15-zoom-psirt-zsb-26014-workplace-windows-cvss-98-unauth-takeover/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-15-zoom-psirt-zsb-26014-workplace-windows-cvss-98-unauth-takeover/</guid><description>Zoom pushed a critical unauth account-takeover advisory (ZSB-26014, CVSS 9.8) for the Windows Workplace client and VDI Client — patch to 7.0.0 or the branch build.</description><pubDate>Wed, 15 Jul 2026 23:15:00 GMT</pubDate><category>Zoom</category><category>article</category></item></channel></rss>