← volver
CVE-2021-26812

CVE-2021-26812

40Vexday Risk Score

Corrige pronto. Ella tiene exploit funcional público.

ssvc Attendepss 97%
probabilidad de explotación
97%top 1% de las CVE
explotación observada
noninguna fuente lo reporta
Cross Site Scripting (XSS) in the Jitsi Meet 2.7 through 2.8.3 plugin for Moodle via the "sessionpriv.php" module. This allows attackers to craft a malicious URL, which when clicked on by users, can inject javascript code to be run by the application.
Productos afectados
n/a · n/a