TeamViewer urges users to patch five severe flaws immediately
TeamViewer warned of five high-severity vulnerabilities in its Full Client and Host software for Windows, Linux and macOS. The worst (CVE-2026-92370) is a remote session access control bypass that could lead to remote code execution. Fixes ship in version 15.82, with no evidence of active exploitation.
- CVE-2026-92370 is a remote session access control bypass with RCE risk
- Four more bugs: path traversal, heap overflow, TOCTOU and improper path validation
- Local attacks can grant NT AUTHORITY/SYSTEM or root privileges
- Fixes arrive in TeamViewer 15.82 and supported legacy releases
Read next
Security