cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forwebinar-and-video-conference-with-jitsi-meet webinar-and-video-conference-with-jitsi-meet

Direction: ascending
Jun 07, 2024

Webinar and Video Conference with Jitsi Meet – Create Branded Webinars for WordPress, Meetings & Livestreaming # f8664812bba69a5f8b29000fdf9e58032314d956

Date
Mar 21, 2023
Research Description
Webinar and Video Conference with Jitsi Meet &#8211; Create Branded Webinars for WordPress, Meetings &amp; Livestreaming [webinar-and-video-conference-with-jitsi-meet] < 2.0.0 WordPress Webinar and Video Conference with Jitsi Meet Plugin <= 1.2.5 is vulnerable to Cross Site Request Forgery (CSRF) Update the WordPress Webinar and Video Conference with Jitsi Meet plugin to the latest available version (at least 2.0.0). Lana Codes discovered and reported this Cross Site Request Forgery (CSRF) vulnerability in WordPress Webinar and Video Conference with Jitsi Meet Plugin. This could allow a malicious actor to force higher privileged users to execute unwanted actions under their current authentication. This vulnerability has been fixed in version 2.0.0.
Affected versions
max 2.0.0.
Status
vulnerable

Webinar and Video Conference with Jitsi Meet &#8211; Create Branded Webinars for WordPress, Meetings &amp; Livestreaming # CVE-2024-30437

CVE, Research URL

CVE-2024-30437

Date
Mar 29, 2024
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPPOOL Webinar and Video Conference with Jitsi Meet allows Stored XSS.This issue affects Webinar and Video Conference with Jitsi Meet: from n/a through 2.6.3.
Affected versions
max 2.6.4.
Status
vulnerable
Jun 13, 2026

Webinar and Video Conference with Jitsi Meet &#8211; Create Branded Webinars for WordPress, Meetings &amp; Livestreaming # CVE-2022-47150

CVE, Research URL

CVE-2022-47150

Date
Jun 11, 2026
Research Description
Cross-Site request forgery (CSRF) vulnerability in weDevs WooCommerce Conversion Tracking allows Cross Site Request Forgery. This issue affects WooCommerce Conversion Tracking: from n/a through 2.0.10.
Affected versions
max 2.0.0.
Status
vulnerable