In Jitsi Meet before 9391, a logic flaw in password-protected Jitsi meetings (that make use of a lobby) leads to the disclosure of the meeting password when a user is invited to a call after waiting in the lobby.
References
Configurations
No configuration.
History
20 Mar 2025, 20:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-640 |
Information
Published : 2024-05-02 16:15
Updated : 2025-03-20 20:15
NVD link : CVE-2024-33530
Mitre link : CVE-2024-33530
CVE.ORG link : CVE-2024-33530
JSON object : View
Products Affected
No product.
CWE
CWE-640
Weak Password Recovery Mechanism for Forgotten Password