Race Condition Vulnerability in VMware Horizon's Zoom Workplace VDI Plugin
CVE-2025-58131

6.6MEDIUM

What is CVE-2025-58131?

A race condition has been identified in the Zoom Workplace VDI Plugin for VMware Horizon on macOS, affecting versions prior to 6.4.10, and also prior versions 6.2.15 and 6.3.12. This vulnerability potentially allows an authenticated user to exploit this race condition to disclose sensitive information via network access, leading to unauthorized access to data. Users are encouraged to upgrade to the latest versions to mitigate this risk.

Affected Version(s)

Zoom Workplace VDI Plugin macOS Universal installer for VMware Horizon 0

References

CVSS V3.1

Score:
6.6
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-58131 : Race Condition Vulnerability in VMware Horizon's Zoom Workplace VDI Plugin