CVE-2020-12113
23.04.2020, 18:15
BigBlueButton before 2.2.4 allows XSS via closed captions because dangerouslySetInnerHTML in React is used.
Vendor | Product | Version |
---|---|---|
bigbluebutton | bigbluebutton | 𝑥 < 2.2.4 |
𝑥
= Vulnerable software versions
References
BigBlueButton before 2.2.4 allows XSS via closed captions because dangerouslySetInnerHTML in React is used.
Vendor | Product | Version |
---|---|---|
bigbluebutton | bigbluebutton | 𝑥 < 2.2.4 |