Products: 3
    Vulnerabilities: 9
    Known Exploited: 0
    2
    Critical Level Threats
    3
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-64754

    Jitsi Meet has DOM Redirect on Microsoft OAuth Flow

    Last Modified: Apr 15, 2026
    Published: Nov 13, 2025

    CVE-2024-44080

    In Jitsi Meet before 2.0.9779, the functionality to share an image using giphy was implemented in an insecure way, resulting in clients loading GIFs from any arbitrary URL if a message from another participant contains a URL encoded in the expected format.

    Last Modified: Jul 10, 2025
    Published: Oct 29, 2024

    CVE-2024-33530

    In Jitsi Meet before 9391, a logic flaw in password-protected Jitsi meetings (that make use of a lobby) leads to the disclosure of the meeting password when a user is invited to a call after waiting in the lobby.

    Last Modified: Apr 15, 2026
    Published: May 02, 2024

    CVE-2022-43550

    A command injection vulnerability exists in Jitsi before commit 8aa7be58522f4264078d54752aae5483bfd854b2 when launching browsers on Windows which could allow an attacker to insert an arbitrary URL which opens up the opportunity to remote execution.

    Last Modified: Mar 25, 2025
    Published: Feb 09, 2023

    CVE-2022-36736

    Jitsi-2.10.5550 was discovered to contain a vulnerability in its web UI which allows attackers to perform a clickjacking attack via a crafted HTTP request. NOTE: this is disputed by the vendor

    Last Modified: Nov 21, 2024
    Published: Sep 08, 2022
    Items Per Page