Security Advisory
CVE-2024-44081
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In Jitsi Meet before 2.0.9779, the functionality to share a video file was implemented in an insecure way, resulting in clients loading videos from an arbitrary URL if a message from another participant contains a URL encoded in the expected format.