TeamViewer Fixes Five Severe Vulnerabilities in Clients and Host
TeamViewer released updates for five vulnerabilities with a maximum CVSS score of 8.8. Full Client and Host versions before 15.82 for Windows, Linux and macOS are affected.

TeamViewer published vulnerability fixes on September 29, 2026, in security bulletin TV-2026-1010. The updates address five flaws in the Full Client and Host applications, with a maximum CVSS severity of 8.8. Users and administrators should upgrade to version 15.82 or the latest available version.
The flaws affect TeamViewer Full Client and Host versions before 15.82 on Windows, Linux and macOS. The vendor also released fixes for selected older supported branches. The Canadian Centre for Cyber Security issued a separate advisory on the updates.
TeamViewer vulnerability fixes: the most serious flaw bypasses session restrictions
The most serious reported flaw is CVE-2026-92370. According to TeamViewer, it may bypass user-configured access restrictions when establishing a session. This could lead to unauthorized actions and potentially code execution.
The practical impact of this flaw depends on the configuration and the specific session scenario. The bulletin lists user interaction as part of the CVSS vector for CVE-2026-92370. It is therefore not a confirmed case of unauthenticated remote exploitation without user interaction.
The remaining vulnerabilities include local privilege escalation and the possibility of code execution after opening a malicious session-recording file in .tvs format. In this scenario, safely handling session-recording files from untrusted sources is particularly important.
Who is affected by the updates
The fixes apply to TeamViewer Full Client and TeamViewer Host on three supported desktop platforms:
- Windows,
- Linux,
- macOS.
Organizations using TeamViewer for remote device management should identify all installations below version 15.82. This also applies to devices with the Host component, which is commonly used for remote access to managed systems.
Remote-access software may operate with high privileges on managed devices. The reported flaws are therefore particularly significant in environments where TeamViewer is used to administer workstations or other endpoints. However, according to the available information, some flaws require local access or opening a malicious .tvs file.
Recommended steps for administrators
TeamViewer recommends installing version 15.82 or the latest version available for the supported branch in use. Administrators should verify Full Client and Host versions across their managed environments and include the updates in their standard patch-management process.
For older supported branches, it is advisable to check whether a security update is available for the specific branch. It also makes sense to restrict the opening of .tvs files when their origin is not trusted.
No confirmed active exploitation
As of September 29, 2026, TeamViewer stated that it was not aware of publicly available exploits or active exploitation of these vulnerabilities. The disclosure therefore does not describe a confirmed incident or zero-day attack.
Further developments will depend on any exploitation information from TeamViewer, national CERT teams or security companies. Administrators should also monitor for possible updates to bulletin TV-2026-1010 and verify that fixes have been deployed across all affected installations.
Sources
- TeamViewer — TV-2026-1010 – Primarily confirms the release date, five CVEs, affected platforms and versions, severity scores, availability of fixes and the absence of known active exploitation.
- Canadian Centre for Cyber Security — AV26-977 – Independently confirms that the advisory concerns TeamViewer Full Client and Host for Windows, Linux and macOS, and urges administrators to apply the updates.
- BleepingComputer – Provides secondary coverage of TeamViewer’s call for urgent updates.
Verified and updated: 09/30/2026 15:33



