Security Advisory

CVE-2026-41127

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-21 23:24:46
Last updated 2026-04-22 13:12:52
Assigner GitHub_M
State PUBLISHED

Description

BigBlueButton is an open-source virtual classroom. Versions prior to 3.0.24 have a missing authorization that allows viewers to inject/overwrite captions Version 3.0.24 tightened the permissions on who is able to submit captions. No known workarounds are available.