PT-2025-46918 · Unknown+1 · Jitsi Meet+1

Published

2025-11-13

·

Updated

2025-11-14

·

CVE-2025-64754

CVSS v4.0

2.7

Low

VectorAV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N/E:U
Name of the Vulnerable Software and Affected Versions Jitsi Meet versions prior to 2.0.10532
Description Jitsi Meet is a video conferencing application. A flaw exists that allows attackers to hijack the OAuth authentication window for Microsoft accounts. This issue does not have any known workarounds.
Recommendations Update Jitsi Meet to version 2.0.10532 or later.

Exploit

Fix

Open Redirect

Weakness Enumeration

Related Identifiers

CVE-2025-64754
GHSA-5FX7-WGCR-FJ78

Affected Products

Jitsi Meet
Account