Security Advisory

CVE-2020-25019

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-08-29 16:07:29
Last updated 2025-11-17 19:13:58
Assigner mitre
State PUBLISHED

Description

jitsi-meet-electron (aka Jitsi Meet Electron) before 2.3.0 calls the Electron shell.openExternal function without verifying that the URL is for an http or https resource, in some circumstances.