Federal News
Splunk and Zoom Release Security Patches
March 12, 2026
Splunk and Zoom have issued critical security patches addressing multiple severe vulnerabilities, including privilege escalation and remote code execution flaws, in their software products. These updates are essential for organizations using these platforms to apply promptly to reduce the risk of exploitation and maintain secure operational environments.
- Government agencies and contractors using Splunk and Zoom should prioritize patch deployment to comply with cybersecurity best practices and reduce exposure to cyber threats.
- This development underscores the ongoing need for vigilant vulnerability management and timely software updates in procurement planning and IT asset management.
- Procurement professionals should consider the security posture of software vendors and the frequency of critical patches when evaluating technology acquisitions.
- Cybersecurity service providers may find increased demand for patch management support and vulnerability assessment services related to these widely used platforms.
This occurs because of insufficient input sanitization when previewing uploaded files before indexing them
— Splunk
Vendors
Splunk, Zoom
Sources
- Splunk, Zoom Patch Severe Vulnerabilities - SecurityWeek · SecurityWeek · Mar 12