CVE-2025-30662: Zoom Workplace VDI Plugin macOS Universal Installer - Symlink Following
Symlink following in the installer for the Zoom Workplace VDI Plugin macOS Universal installer before version 6.3.14, 6.4.14, and 6.5.10 in their respective tracks may allow an authenticated user to conduct a disclosure of information via network access.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30662?
CVE-2025-30662 has been rated as a medium severity vulnerability due to its potential for information disclosure.
How do I fix CVE-2025-30662?
To mitigate CVE-2025-30662, update your Zoom Workplace VDI Plugin to version 6.3.14, 6.4.14, or 6.5.10 or later.
Who is affected by CVE-2025-30662?
CVE-2025-30662 affects users of the Zoom Workplace VDI Plugin on macOS prior to versions 6.3.14, 6.4.14, and 6.5.10.
What type of vulnerability is CVE-2025-30662?
CVE-2025-30662 is a symlink following vulnerability that may allow authenticated users to disclose sensitive information.
When was CVE-2025-30662 reported?
CVE-2025-30662 was reported in the context of vulnerabilities found in previous versions of the Zoom Workplace VDI Plugin.