CVE-2025-64754
Severity CVSS v4.0:
LOW
Type:
CWE-601
URL Redirection to Untrusted Site ('Open Redirect')
Publication date:
13/11/2025
Last modified:
14/11/2025
Description
Jitsi Meet is an open source video conferencing application. A vulnerability present in versions prior to 2.0.10532 allows attackers to hijack the OAuth authentication window for Microsoft accounts. This is fixed in version 2.0.10532. No known workarounds are available.



