CVE-2025-62482: Zoom Workplace for Windows - Cross-site Scripting
Published Nov 13, 2025
·Updated
Cross-site scripting in Zoom Workplace for Windows before version 6.5.10 may allow an unauthenticated user to impact integrity via network access.
Affected Software
3 affected components
Zoom Workplace for Windows<6.5.10
Zoom Meeting Software Development Kit Windows<6.5.10
Zoom Workplace Desktop Windows<6.5.10
Event History
Nov 13, 2025
CVE Published
via MITRE·02:56 PM
Data Sourced
via MITRE·02:56 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-62482?
CVE-2025-62482 is classified as a high severity vulnerability due to its potential impact on the integrity of user data.
2
How do I fix CVE-2025-62482?
To mitigate CVE-2025-62482, upgrade your Zoom Workplace for Windows to version 6.5.10 or later.
3
What type of vulnerability is CVE-2025-62482?
CVE-2025-62482 is a cross-site scripting (XSS) vulnerability that can be exploited by unauthenticated users.
4
Who is affected by CVE-2025-62482?
Users of Zoom Workplace for Windows versions prior to 6.5.10 are affected by CVE-2025-62482.
5
What could an attacker achieve with CVE-2025-62482?
An attacker exploiting CVE-2025-62482 may be able to impact the integrity of user data through network access.