Vulnerability Details CVE-2024-44080
In Jitsi Meet before 2.0.9779, the functionality to share an image using giphy was implemented in an insecure way, resulting in clients loading GIFs from any arbitrary URL if a message from another participant contains a URL encoded in the expected format.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 33.1%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2024-44080
-
cpe:2.3:a:8x8:jitsi_meet:-
-
cpe:2.3:a:8x8:jitsi_meet:2.0.5963