CVE-2024-44080
29.10.2024, 22:15
In Jitsi Meet before 2.0.9779, the functionality to share an image using giphy was implemented in an insecure way, resulting in clients loading GIFs from any arbitrary URL if a message from another participant contains a URL encoded in the expected format.
Vendor | Product | Version |
---|---|---|
8x8 | jitsi_meet | 𝑥 < 2.0.9779 |
𝑥
= Vulnerable software versions