cleantalk
Vulnerabilities and Security Researches

Webinar and Video Conference with Jitsi Meet – Create Branded Webinars for WordPress, Meetings & Livestreaming, f8664812bba69a5f8b29000fdf9e58032314d956

Published on
Mar 21, 2023
Research Description
Webinar and Video Conference with Jitsi Meet &#8211; Create Branded Webinars for WordPress, Meetings &amp; Livestreaming [webinar-and-video-conference-with-jitsi-meet] < 2.0.0 WordPress Webinar and Video Conference with Jitsi Meet Plugin <= 1.2.5 is vulnerable to Cross Site Request Forgery (CSRF) Update the WordPress Webinar and Video Conference with Jitsi Meet plugin to the latest available version (at least 2.0.0). Lana Codes discovered and reported this Cross Site Request Forgery (CSRF) vulnerability in WordPress Webinar and Video Conference with Jitsi Meet Plugin. This could allow a malicious actor to force higher privileged users to execute unwanted actions under their current authentication. This vulnerability has been fixed in version 2.0.0.
Affected versions
max 2.0.0.
Status
vulnerable