CVE-2021-26812
40Vexday Risk Score
Corrige pronto. Ella tiene exploit funcional público.
ssvc Attendepss 97%
probabilidad de explotación
97%top 1% de las CVE
explotación observada
noninguna fuente lo reporta
Cross Site Scripting (XSS) in the Jitsi Meet 2.7 through 2.8.3 plugin for Moodle via the "sessionpriv.php" module. This allows attackers to craft a malicious URL, which when clicked on by users, can inject javascript code to be run by the application.
Productos afectados
n/a · n/a