CVE-2025-64754

Severity CVSS v4.0:
LOW
Type:
CWE-601 URL Redirection to Untrusted Site ('Open Redirect')
Publication date:
13/11/2025
Last modified:
14/11/2025

Description

Jitsi Meet is an open source video conferencing application. A vulnerability present in versions prior to 2.0.10532 allows attackers to hijack the OAuth authentication window for Microsoft accounts. This is fixed in version 2.0.10532. No known workarounds are available.