Today > vulnerabilities   -   You can now download lists of IOCs here!

CVE-2024-44081

Nov. 1, 2024, 12:57 p.m.

Product(s) Impacted

Jitsi Meet

  • before 2.0.9779

Description

In Jitsi Meet before 2.0.9779, the functionality to share a video file was implemented in an insecure way, resulting in clients loading videos from an arbitrary URL if a message from another participant contains a URL encoded in the expected format.

Weaknesses

Date

Published: Oct. 29, 2024, 10:15 p.m.

Last Modified: Nov. 1, 2024, 12:57 p.m.

Status : Awaiting Analysis

CVE has been recently published to the CVE List and has been received by the NVD.

More info

Source

cve@mitre.org

References