CVE-2025-64754 - Jitsi Meet has DOM Redirect on Microsoft OAuth Flow
CVE ID : CVE-2025-64754
Published : Nov. 13, 2025, 10:15 p.m. | 1 hour, 21 minutes ago
Description : Jitsi Meet is an open source video conferencing application. A vulnerability present in versions prior to 2.0.10532 allows attackers to hijack the OAuth authentication window for Microsoft accounts. This is fixed in version 2.0.10532. No known workarounds are available.
Severity: 2.7 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Published : Nov. 13, 2025, 10:15 p.m. | 1 hour, 21 minutes ago
Description : Jitsi Meet is an open source video conferencing application. A vulnerability present in versions prior to 2.0.10532 allows attackers to hijack the OAuth authentication window for Microsoft accounts. This is fixed in version 2.0.10532. No known workarounds are available.
Severity: 2.7 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...