CVE-2020-25019

jitsi-meet-electron (aka Jitsi Meet Electron) before 2.3.0 calls the Electron shell.openExternal function without verifying that the URL is for an http or https resource, in some circumstances.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:jitsi:meet_electron:*:*:*:*:*:*:*:*

Information

Published : 2020-08-29 10:15

Updated : 2020-09-03 10:58


NVD link : CVE-2020-25019

Mitre link : CVE-2020-25019


JSON object : View

CWE
CWE-345

Insufficient Verification of Data Authenticity

Advertisement

dedicated server usa

Products Affected

jitsi

  • meet_electron