TeamViewer patches high-severity flaws in Full Client and Host products
The fixes close a session access bypass that could lead to remote code execution, and TeamViewer says users should update right away.
TeamViewer has issued urgent patches for five vulnerabilities in its Full Client and Host products, including one access-control bypass that could let a remote attacker reach code execution on Windows, Linux, and macOS systems. The company says the issues are fixed in TeamViewer Clients version 15.82 and in supported maintenance and legacy releases. It says it has not seen public exploit code or active exploitation in the wild. One of the flaws is a high-severity remote session access control bypass tracked as CVE-2026-92370, while the others include a path traversal, heap buffer overflow, TOCTOU race condition, and improper path validation. TeamViewer is telling users to update immediately because its software is widely abused by criminals for remote access and malware deployment.
Why it matters
For anyone running TeamViewer Full Client or Host, the message is simple: patch now, because one flaw could let an attacker take unauthorized actions on targeted systems. TeamViewer says it has not seen public exploit code or active exploitation, but the severity of the issue and the broader set of flaws mean outdated installs now carry more risk than before.
Keep or strike?
Does this story matter, or is it hype? Mark it before you see what everyone else did.
Sources
- BleepingComputer