Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-26812

Cross Site Scripting (XSS) in the Jitsi Meet 2.7 through 2.8.3 plugin for Moodle via the "sessionpriv.php" module. This allows attackers to craft a malicious URL, which when clicked on by users, can inject javascript code to be run by the application.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.191
EPSS Ranking 95.0%
CVSS Severity
CVSS v3 Score 6.1
CVSS v2 Score 4.3
Products affected by CVE-2021-26812
  • Jitsi » Meet » Version: Any
    cpe:2.3:a:jitsi:meet:*


Contact Us

Shodan ® - All rights reserved