Cross Site Scripting (XSS) in the Jitsi Meet 2.7 through 2.8.3 plugin for Moodle via the "sessionpriv.php" module. This allows attackers to craft a malicious URL, which when clicked on by users, can inject javascript code to be run by the application.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T20:33:40.879Z
Reserved: 2021-02-05T00:00:00
Link: CVE-2021-26812
No data.
Status : Modified
Published: 2021-04-14T14:15:13.413
Modified: 2024-11-21T05:56:51.180
Link: CVE-2021-26812
No data.
OpenCVE Enrichment
No data.
Weaknesses