From gbhackers.com
Four critical security vulnerabilities have been fixed recently in the popular video conferencing service Zoom. These security flaws could be exploited by the threat actors to send specially crafted XMPP messages to another user and then run malicious code on that server using the compromised user’s computer.
The vulnerabilities that are addressed recently range from 5.9 to 8.1 on the severity scale. All four security flaws were discovered and reported in February 2022 by Ivan Fratric of Google Project Zero.