Three Zoom annotation bugs let anyone on a call run code on other machines. The patches shipped in June and July, two months before disclosure.

Researchers say it took fewer than 20 prompts for a public AI tool to find a flaw (now fixed) allowing anyone on a Zoom call to hijack another participants’ device.

A Zoom vulnerability discovered with the help of an AI tool gave an attacker the ability to remotely execute code...