MUSTAFA SANLI

2 exploits Active since Oct 2024
CVE-2024-44080 WRITEUP HIGH WRITEUP
8X8 Jitsi Meet < 2.0.9779 - XSS
In Jitsi Meet before 2.0.9779, the functionality to share an image using giphy was implemented in an insecure way, resulting in clients loading GIFs from any arbitrary URL if a message from another participant contains a URL encoded in the expected format.
CVSS 7.5
CVE-2024-44081 WRITEUP CRITICAL WRITEUP
8X8 Jitsi Meet < 2.0.9779 - XSS
In Jitsi Meet before 2.0.9779, the functionality to share a video file was implemented in an insecure way, resulting in clients loading videos from an arbitrary URL if a message from another participant contains a URL encoded in the expected format.
CVSS 9.8